CVE-2014-0048

Publication date 2 January 2020

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

9.8 · Critical

Score breakdown

Description

An issue was found in Docker before 1.6.0. Some programs and scripts in Docker are downloaded via HTTP and then executed or used in unsafe ways.

Status

Package Ubuntu Release Status
docker.io 17.04 zesty
Fixed 1.12.6-0ubuntu4
16.10 yakkety Ignored end of life
16.04 LTS xenial
Fixed 1.10.3-0ubuntu6
15.10 wily Ignored end of life
15.04 vivid Ignored end of life
14.10 utopic Ignored end of life
14.04 LTS trusty
Fixed 1.6.2~dfsg1-1ubuntu4~14.04.1
12.04 LTS precise Not in release
10.04 LTS lucid Not in release

Severity score breakdown

CVSS version: CVSS v3.0

Base score 9.8 · Critical

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H


Access our resources on patching vulnerabilities