Skip to main content

Vendor archive

mobyproject CVEs

Beta · best-effort

38 CVEs tagged to vendor mobyproject2 Critical, 11 High, 22 Medium, 3 Low, 0 Unrated.

CVE-2021-32847

Published Feb 20, 2023

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior, a malicious guest can trigger a vulnerability in the host by abusi…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32846

Published Feb 17, 2023

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107, function `pci_vtsock_proc_tx` in `virtio-sock` can lead to to uninitialized…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32845

Published Feb 17, 2023

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, the implementation of `qnotify` at `pci_vtrnd_notify`…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2021-32844

Published Feb 17, 2023

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, ` vi_pci_write` has is a call to `vc_cfgwrite` that do…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32843

Published Feb 17, 2023

HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of HyperKit, `virtio.c` has is a call to `vc_cfgread` that does not…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-36109

Published Sep 9, 2022

Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where supplementary groups are not set up properly. I…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-41089

Published Oct 4, 2021

Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where attempting to copy files using `docker cp` into…

CVSS 2.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2018-12608

Published Sep 10, 2018

An issue was discovered in Docker Moby before 17.06.0. The Docker engine validated a client TLS certificate using both the configured client CA root certificate and all system roo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16539

Published Nov 4, 2017

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain o…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 26-38 of 38 CVEsPage 2 of 2