You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa docker

Sigurnosni nedostaci programskog paketa docker

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

Fedora Update Notification
2016-06-09 20:04:23.860679

Name : docker
Product : Fedora 23
Version : 1.10.3
Release : 24.gitf476348.fc23
Summary : Automates deployment of containerized applications
Description :
Docker is an open-source engine that automates the deployment of any
application as a lightweight, portable, self-sufficient container that will
run virtually anywhere.

Docker containers can encapsulate any payload, and will run consistently on
and between virtually any server. The same container that a developer builds
and tests on a laptop will run at scale, in production*, on VMs, bare-metal
servers, OpenStack clusters, public instances, or combinations of the above.

Update Information:

built docker @projectatomic/fedora-1.10.3 commit f476348 —- built docker
@projectatomic/fedora-1.10.3 commit f476348 —- built docker
@projectatomic/fedora-1.10.3 commit 4158ccc —- Resolves: #1335649 – enable
Red Hat subscription use in Docker containers on Fedora —- built docker
@projectatomic/fedora-1.10.3 commit 8ecd47f —- built docker
@projectatomic/fedora-1.10.3 commit 8ecd47f —- built docker
@projectatomic/fedora-1.10.3 commit 667d6d1 —- built docker
@projectatomic/fedora-1.10.3 commit bba2d6d —- built docker
@projectatomic/fedora-1.10.3 commit a41254f —- built docker
@projectatomic/fedora-1.10.3 commit#964eda6 —- built docker
@projectatomic/fedora-1.10.3 commit#ef2fa35 —- docker package runtime
depends on docker-forward-journald —- rebuilt to remove dockerroot user
creation —- rebuilt to remove dockerroot user creation —- rebuilt to
include dss_libdir directory —- built docker @projectatomic/fedora-1.10.2
commit#86e59a5 —- rebuilt with seccomp enabled —- built docker
@projectatomic/fedora-1.10.1 commit#6c71d8f —- built docker
@projectatomic/fedora-1.10.1 commit#6c71d8f —- rebuilt, no change —-
built docker @projectatomic/fedora-1.10.2 commit#0f5ac89

[ 1 ] Bug #1335649 – Enable use of Red Hat subscriptions in docker containers on Fedora
[ 2 ] Bug #1289851 – Docker.service does not require docker.socket which can lead to Docker crash when docker.sock is host mounted
[ 3 ] Bug #1254694 – “man docker-login” incorrectly claims that you can “docker login” to Docker Hub as non-root user
[ 4 ] Bug #1269602 – Secrets patch does not work in Fedora
[ 5 ] Bug #1289963 – docker push not working in 1.9.1
[ 6 ] Bug #1303105 – Docker does not own /usr/lib/docker-storage-setup
[ 7 ] Bug #1326110 – Unable to create containers with Kubernetes master and Docker 1.9.1-9
[ 8 ] Bug #1312934 – “docker images” command returns all the repositories prepended with the “” string
[ 9 ] Bug #1329454 – CVE-2016-3697 docker: privilege escalation via confusion of usernames and UIDs [fedora-all]
[ 10 ] Bug #1340921 – “Failed to get pwuid struct: user: unknown userid ” log spam

This update can be installed with the “yum” update program. Use
su -c ‘yum update docker’ at the command line.
For more information, refer to “Managing Software with yum”,
available at

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list

AutorMarko Stanec
Cert idNCERT-REF-2016-06-0045-ADV
More in Preporuke
Sigurnosni nedostaci programskog paketa firefox

Otkriveni su sigurnosni nedostaci u programskom paketu firefox za operacijski sustav Ubuntu. Otkriveni nedostaci potencijalnim napadačima omogućuju rušenje firefoxa, izvršavanje...