Cloud Foundry Garden-runC Docker Image Layer Quota Bypass Vulnerability

Cloud Foundry Garden-runC Docker Image Layer Quota Bypass Vulnerability

CVE-2018-1277 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:N/A:P

Cloud Foundry Garden-runC, versions prior to 1.13.0, does not correctly enforce disc quotas for Docker image layers. A remote authenticated user may push an app with a malicious Docker image that will consume more space on a Diego cell than allocated in their quota, potentially causing a DoS against the cell.

Learn more about our Cis Benchmark Audit For Docker.