Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-36623

Published: December 10, 2024Last modified: June 5, 2025

Description

moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes.

Severity score breakdown

ParameterValue
Base score8.1
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredLOW
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactHIGH
Availability impactHIGH
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSdockerUnknown (20.10.21-r1)
StreamdockerUnknown (24.0.2-r0)

References

ON THIS PAGE