Candidate: CVE-2014-0048 PublicDate: 2020-01-02 17:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0048 https://bugzilla.redhat.com/show_bug.cgi?id=1063550 Description: An issue was found in Docker before 1.6.0. Some programs and scripts in Docker are downloaded via HTTP and then executed or used in unsafe ways. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_docker.io: upstream_docker.io: released (1.5) lucid_docker.io: DNE precise_docker.io: DNE precise/esm_docker.io: DNE trusty_docker.io: released (1.6.2~dfsg1-1ubuntu4~14.04.1) trusty/esm_docker.io: DNE (trusty was released [1.6.2~dfsg1-1ubuntu4~14.04.1]) utopic_docker.io: ignored (reached end-of-life) vivid_docker.io: ignored (reached end-of-life) vivid/stable-phone-overlay_docker.io: DNE vivid/ubuntu-core_docker.io: DNE wily_docker.io: ignored (reached end-of-life) xenial_docker.io: released (1.10.3-0ubuntu6) yakkety_docker.io: ignored (reached end-of-life) zesty_docker.io: released (1.12.6-0ubuntu4) devel_docker.io: not-affected (1.13.1-0ubuntu4)