Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images to bypass user permissions to access files within the container filesystem or mounted volumes.
| Software | From | Fixed in |
|---|---|---|
| docker / docker | 1.12.2 | 1.12.2.x |