FlawAtlas
Search the atlas
SUSE-SU-2024:2709-1 Not scored

Security update for docker

This update for docker fixes the following issues: - Update to Docker 25.0.6-ce. See upstream changelog online at <https://docs.docker.com/engine/release-notes/25.0/#2506> - CVE-2024-41110: A Authz zero length regression that could lead to authentication bypass was fixed (bsc#1228324) - Fix BuildKit's symlink resolution logic to correctly handle non-lexical symlinks. (bsc#1221916) - Write volume options atomically so sudden system crashes won't result in future Docker starts failing due to empty files. (bsc#1214855)

Exploit probability Not scored
Published August 2, 2024
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Module for Containers 12 docker

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2024:2709-1

This update for docker fixes the following issues: - Update to Docker 25.0.6-ce. See upstream changelog online at <https://docs.docker.com/engine/release-notes/25.0/#2506> - CVE-2024-41110: A Authz zero length regression that could lead to authentication bypass was fixed (bsc#1228324) - Fix BuildKit's symlink resolution logic to correctly handle non-lexical symlinks. (bsc#1221916) - Write volume options atomically so sudden system crashes won't result in future Docker starts failing due to empty files. (bsc#1214855)

View original source

05 / REFERENCES

Further evidence