moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes.
References
Configurations
History
02 Jul 2025, 20:36
Type | Values Removed | Values Added |
---|---|---|
References | () https://gist.github.com/1047524396/c192c0159a19bf58a4373b696467dc29 - Third Party Advisory | |
References | () https://github.com/moby/moby/blob/v25.0.3/pkg/streamformatter/streamformatter.go#L115 - Product | |
References | () https://github.com/moby/moby/commit/5689dabfb357b673abdb4391eef426f297d7d1bb - Patch | |
References | () https://github.com/moby/moby/commit/8e3bcf19748838b30e34d612832d1dc9d90363b8 - Patch | |
First Time |
Mobyproject moby
Mobyproject |
|
CPE | cpe:2.3:a:mobyproject:moby:*:*:*:*:*:*:*:* |
01 May 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes. | |
References |
|
04 Dec 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.1 |
CWE | CWE-362 |
29 Nov 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-29 18:15
Updated : 2025-07-02 20:36
NVD link : CVE-2024-36623
Mitre link : CVE-2024-36623
CVE.ORG link : CVE-2024-36623
JSON object : View
Products Affected
mobyproject
- moby
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')