CVE Database
/

CVE-2018-11757

Back to search

CVE-2018-11757

Published: Jul 23, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

In Docker Skeleton Runtime for Apache OpenWhisk, a Docker action inheriting the Docker tag openwhisk/dockerskeleton:1.3.0 (or earlier) may allow an attacker to replace the user function inside the container if the user code is vulnerable to code exploitation.

VendorProductVersions

Apache Software Foundation

Docker Skeleton Runtime for Apache OpenWhisk

affected
Docker tag openwhisk/dockerskeleton 1.3.0 (or lower)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now