Oracle Linux 7 : docker-cli / docker-engine (ELSA-2020-5739)

medium Nessus Plugin ID 137821

Version 1.6

Oct 23, 2024, 10:51 PM

  • CVE (set "CVE" coverage to "CVE-2020-13401")
  • CVSS metrics ("CVSSv2 score" set to 6.0)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:M/Au:S/C:P/I:P/A:P")
  • CVSS metrics ("CVSSv3 score" set to 6.0)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L")
  • CVSS metrics ("Cvssv4 score" set to 0.0)
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")
  • CVSSv2 score source (changed from "CVE-2019-5736" to "CVE-2020-13401")
  • CVSSv2 severity (based on CVE-2020-13401, severity decreased from "High" to "Medium")
  • CVSSv2 severity (based on None, severity decreased from "High" to "Low")
  • CVSSv3 severity (based on None, severity decreased from "High" to "Medium")
  • Detection (updated detection logic)
  • Exploit attributes ("Exploit available" changed from "True" to "False")
  • Exploit attributes ("Exploit framework metasploit" changed from "True" to none)
  • Exploit attributes ("Exploitability ease" changed from "Exploits are available" to "No known exploits are available")
  • Exploit attributes ("Exploited by malware" changed from "True" to none)
  • Plugin metadata

Plugin Feed: 202410232251

Version 1.5

Mar 5, 2024, 5:50 PM

  • CVSSv3 score source (changed from "CVE-2020-13401" to none)
  • Exploit attributes ("Exploit available" set to "True". "Exploit framework metasploit" set to "True". "Exploited by malware" set to "True". "Exploitability ease" changed from "No known exploits are available" to "Exploits are available")

Plugin Feed: 202403051750

Version 1.4

Mar 5, 2024, 2:40 PM

  • Exploit attributes ("Exploitability ease" changed from "No known exploits are available" to "Exploits are available")
  • Exploit attributes ("Exploited by malware" set to "True")
  • CVSSv3 score source (changed from "CVE-2020-13401" to none)
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploit framework metasploit" set to "True")

Plugin Feed: 202403051440

Version 1.4

May 3, 2023, 7:12 PM

  • Logic Changes (Added support for major version comparisons)

Plugin Feed: 202305031912

* Changelogs are generally available for changes made after Nov 1, 2022