An issue was discovered in Docker Engine before 19.03.11. An attacker in a container, with the CAP_NET_RAW capability, can craft IPv6 router advertisements, and consequently spoof external IPv6 hosts, obtain sensitive information, or cause a denial of service.
| Software | From | Fixed in |
|---|---|---|
| docker / engine | - | 19.03.11 |
| fedoraproject / fedora | 31 | 31.x |
| fedoraproject / fedora | 32 | 32.x |
| debian / debian_linux | 10.0 | 10.0.x |
github.com/docker/docker-ce
|
- | 19.03.11 |