github.com/moby/moby
Ecosystem:
go
go
Package URL:
pkg:golang/github.com/moby/moby
Total PRs:
160 Dependabot PRs
160 Dependabot PRs
Latest PR:
17 days ago
17 days ago
Unique Repositories:
39 repositories
39 repositories
Unique Repos (30 days):
3 repositories
3 repositories
Security Advisories
Path Traversal in Moby builder
GHSA-6hwg-w5jg-9c6x
CVE-2020-27534
MODERATE
published almost 2 years ago
• updated about 6 hours ago
util/binfmt_misc/check.go in Builder in Docker Engine before 19.03.9 calls os.OpenFile with a potentially unsafe qemu-check temporary pathname, con...
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
GHSA-2mm7-x5h6-5pvq
CVE-2022-24769
MODERATE
published over 1 year ago
• updated 5 days ago
### Impact
A bug was found in Moby (Docker Engine) where containers were incorrectly started with non-empty inheritable Linux process capabilities...
Moby (Docker Engine) Insufficiently restricted permissions on data directory
GHSA-3fwx-pjgw-3558
CVE-2021-41091
MODERATE
published almost 2 years ago
• updated about 6 hours ago
## Impact
A bug was found in Moby (Docker Engine) where the data directory (typically `/var/lib/docker`) contained subdirectories with insufficien...
NULL Pointer Dereference on moby image history
GHSA-q59j-vv4j-v33c
CVE-2024-36620
MODERATE
published 12 months ago
• updated 5 days ago
moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go.
moby docker daemon crash during image pull of malicious image
GHSA-6fj5-m822-rqx8
CVE-2021-21285
MODERATE
published almost 2 years ago
• updated 5 days ago
### Impact
Pulling an intentionally malformed Docker image manifest crashes the `dockerd` daemon.
### Patches
Versions 20.10.3 and 19.03.15 cont...
Recent PRs
build(deps): bump github.com/moby/moby from 28.0.4+incompatible to 28.1.1+incompatible
chainguard-dev/melange #1937
28.0.4+incompatible → 28.1.1+incompatible
Minor PR
Open
7 months ago
2 comments
build(deps): bump the all group across 1 directory with 18 updates
SherfeyInv/brew #125
27.3.1+incompatible → 28.1.1+incompatible
Major PR
Closed
7 months ago
2 comments
chore(deps): bump the go_modules group across 12 directories with 9 updates
offsoc/cds #2
25.0.3+incompatible → 26.1.0+incompatible
Major PR
Closed
8 months ago
1 comment
chore(deps): bump github.com/moby/moby from 26.0.0+incompatible to 26.1.0+incompatible in the go_modules group across 1 directory
26.0.0+incompatible → 26.1.0+incompatible
Minor PR
Closed
12 months ago
3 comments
Package Details
| Name: | github.com/moby/moby |
| Ecosystem: | go |
| PURL Type: | golang |
| Package URL: | pkg:golang/github.com/moby/moby |
| JSON API: | View JSON |
Security Advisories
Package Information
Description:
| Repository: | https://github.com/moby/moby |
| Homepage: | https://github.com/moby/moby |
| Latest Release: |
v27.3.1+incompatible
about 1 year ago |
| Dependent Repos: | 1,657 |
| Dependent Packages: | 461 |
| Ranking: | Top 0.1951% by dependent repos Top 0.1978% by dependent pkgs |