Unauthenticated TCP Connections Vulnerability in Docker Daemon Managed by boot2docker 1.2 and Earlier

Unauthenticated TCP Connections Vulnerability in Docker Daemon Managed by boot2docker 1.2 and Earlier

CVE-2014-5279 · HIGH Severity

AV:N/AC:L/AU:S/C:C/I:C/A:C

The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easier for remote attackers to gain privileges or execute arbitrary code from children containers.

Learn more about our Cis Benchmark Audit For Docker.