Security Advisory

CVE-2024-36621

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-11-29 00:00:00
Last updated 2024-12-04 17:13:36
Assigner mitre
State PUBLISHED

Description

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.