Affected by GO-2022-0390
and 3 other vulnerabilities
GO-2022-0390 : Moby (Docker Engine) started with non-empty inheritable Linux process capabilities in github.com/docker/docker
GO-2024-2914 : Moby (Docker Engine) is vulnerable to Ambiguous OCI manifest parsing in github.com/docker/docker
GO-2024-3304 : Moby Race Condition vulnerability in github.com/moby/moby
GO-2024-3305 : Moby Race Condition vulnerability in github.com/moby/moby
Discover Packages
github.com/moby/moby
pkg
libcontainer
security
restrict
package
Version:
v0.11.0
Opens a new window with list of versions in this module.
Published: May 7, 2014
License: Apache-2.0
Opens a new window with license information.
Imports: 3
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
Documentation
¶
Rendered for
linux/amd64
windows/amd64
darwin/amd64
js/wasm
This has to be called while the container still has CAP_SYS_ADMIN (to be able to perform mounts).
However, afterwards, CAP_SYS_ADMIN should be dropped (otherwise the user will be able to revert those changes).
Source Files
¶
Click to show internal directories.
Click to hide internal directories.