Security Advisory

CVE-2018-11757

9.8
CRITICAL

Vulnerability Description

In Docker Skeleton Runtime for Apache OpenWhisk, a Docker action inheriting the Docker tag openwhisk/dockerskeleton:1.3.0 (or earlier) may allow an attacker to replace the user function inside the container if the user code is vulnerable to code exploitation.
Published Date July 23, 2018
Official Source NIST NVD Advisory