CVE-2018-15514

UnknownEPSS 2.47%

Last modified

CVE-2018-15514 is a vulnerability of currently unknown severity. HandleRequestAsync in Docker for Windows before 18.06.0-ce-rc3-win68 (edge) and before 18.06.0-ce-win72 (stable) deserialized requests over the \\.\pipe\dockerBackend named pipe without verifying the validity of the deserialized .NET objects. This would allow a malicious user in the "docker-users" group (who may not otherwise have administrator access) to escalate to administrator privileges.. EPSS estimates a 2.47% chance of exploitation in the next 30 days.

Description

HandleRequestAsync in Docker for Windows before 18.06.0-ce-rc3-win68 (edge) and before 18.06.0-ce-win72 (stable) deserialized requests over the \\.\pipe\dockerBackend named pipe without verifying the validity of the deserialized .NET objects. This would allow a malicious user in the "docker-users" group (who may not otherwise have administrator access) to escalate to administrator privileges.

Metrics

EPSS Probability
2.47%

82.4th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
DockerDocker1.10.0.0-0
DockerDocker1.10.1.42-1
DockerDocker1.10.2.12
DockerDocker1.10.2.14
DockerDocker1.10.4.0
DockerDocker1.10.6
DockerDocker1.11.0
DockerDocker1.11.1Beta11
DockerDocker1.11.2Beta15
DockerDocker1.12.0
DockerDocker1.12.1
DockerDocker1.12.2Beta29.2
DockerDocker1.12.3
DockerDocker1.12.5
DockerDocker1.13.0
DockerDocker1.13.1
DockerDocker17.0.4Win7
DockerDocker17.0.5Win9
DockerDocker17.03.0
DockerDocker17.03.1Win12
DockerDocker17.04.0Win6
DockerDocker17.06.0Win13
DockerDocker17.06.1Rc1-Win20
DockerDocker17.06.2Win27
DockerDocker17.07.0Rc1-Win21
DockerDocker17.09.0Rc1-Win28
DockerDocker17.09.1Win42
DockerDocker17.10.0Win36
DockerDocker17.11.0Rc2-Win37
DockerDocker17.12.0Rc2-Win41
DockerDocker18.01.0Win48
DockerDocker18.02.0Rc1-Win50
DockerDocker18.03.0Rc3-Win56
DockerDocker18.03.1Win65
DockerDocker18.04.0Rc2-Win61
DockerDocker18.05.0Rc1-Win63

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2018-15514?
HandleRequestAsync in Docker for Windows before 18.06.0-ce-rc3-win68 (edge) and before 18.06.0-ce-win72 (stable) deserialized requests over the \\.\pipe\dockerBackend named pipe without verifying the validity of the deserialized .NET objects. This would allow a malicious user in the "docker-users" group (who may not otherwise have administrator access) to escalate to administrator privileges.
How severe is CVE-2018-15514?
Severity scoring for CVE-2018-15514 is pending analysis. The EPSS model estimates a 2.47% probability of exploitation in the next 30 days.
How do I fix CVE-2018-15514?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2018-15514?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST