{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"important"},"category":"csaf_vex","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"SUSE CVE-2020-14300","title":"Title"},{"category":"description","text":"The docker packages version docker-1.13.1-108.git4ef4b30.el7 as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:0053 (https://access.redhat.com/errata/RHBA-2020:0053) included an incorrect version of runc that was missing multiple bug and security fixes. One of the fixes regressed in that update was the fix for CVE-2016-9962, that was previously corrected in the docker packages in Red Hat Enterprise Linux 7 Extras via RHSA-2017:0116 (https://access.redhat.com/errata/RHSA-2017:0116). The CVE-2020-14300 was assigned to this security regression and it is specific to the docker packages produced by Red Hat. The original issue - CVE-2016-9962 - could possibly allow a process inside container to compromise a process entering container namespace and execute arbitrary code outside of the container. This could lead to compromise of the container host or other containers running on the same container host. This issue only affects a single version of Docker, 1.13.1-108.git4ef4b30, shipped in Red Hat Enterprise Linux 7. Both earlier and later versions are not affected.","title":"Description of the CVE"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"CVE-2020-14300","url":"https://www.suse.com/security/cve/CVE-2020-14300"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1173425 for CVE-2020-14300","url":"https://bugzilla.suse.com/1173425"}],"title":"SUSE CVE CVE-2020-14300","tracking":{"current_release_date":"2025-09-29T01:39:57Z","generator":{"date":"2023-02-15T03:57:56Z","engine":{"name":"cve-database.git:bin/generate-csaf-vex.pl","version":"1"}},"id":"CVE-2020-14300","initial_release_date":"2023-02-15T03:57:56Z","revision_history":[{"date":"2023-02-15T03:57:56Z","number":"2","summary":"Current version"},{"date":"2025-01-01T05:34:39Z","number":"3","summary":"Current version"},{"date":"2025-01-23T04:24:16Z","number":"4","summary":"Current version"},{"date":"2025-02-15T06:13:11Z","number":"5","summary":"Current version"},{"date":"2025-02-17T06:33:58Z","number":"6","summary":"Current version"},{"date":"2025-03-13T16:49:53Z","number":"7","summary":"Current version"},{"date":"2025-03-15T09:56:42Z","number":"8","summary":"Current version"},{"date":"2025-04-25T05:31:12Z","number":"9","summary":"Current version"},{"date":"2025-06-27T01:03:32Z","number":"10","summary":"Current version"},{"date":"2025-07-01T01:28:43Z","number":"11","summary":"Current version"},{"date":"2025-09-29T01:39:57Z","number":"12","summary":"Current version"}],"status":"interim","version":"12"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"Magnum Orchestration 7","product":{"name":"Magnum Orchestration 7","product_id":"Magnum Orchestration 7","product_identification_helper":{"cpe":"cpe:/o:suse:openstack-cloud-magnum-orchestration:7"}}},{"category":"product_name","name":"SUSE CaaS Platform 3.0","product":{"name":"SUSE CaaS Platform 3.0","product_id":"SUSE CaaS Platform 3.0","product_identification_helper":{"cpe":"cpe:/o:suse:caasp:3.0"}}},{"category":"product_name","name":"SUSE Container as a Service Platform 2.0","product":{"name":"SUSE Container as a Service Platform 2.0","product_id":"SUSE Container as a Service Platform 2.0","product_identification_helper":{"cpe":"cpe:/o:suse:caasp:2.0"}}},{"category":"product_name","name":"SUSE Enterprise Storage 6","product":{"name":"SUSE Enterprise Storage 6","product_id":"SUSE Enterprise Storage 6","product_identification_helper":{"cpe":"cpe:/o:suse:ses:6"}}},{"category":"product_name","name":"SUSE Enterprise Storage 7","product":{"name":"SUSE Enterprise Storage 7","product_id":"SUSE Enterprise Storage 7","product_identification_helper":{"cpe":"cpe:/o:suse:ses:7"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 12","product":{"name":"SUSE Linux Enterprise High Performance Computing 12","product_id":"SUSE Linux Enterprise High Performance Computing 12","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15","product":{"name":"SUSE Linux Enterprise High Performance Computing 15","product_id":"SUSE Linux Enterprise High Performance Computing 15","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP1","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP1","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP2","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP2","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP2","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp2"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Containers 12","product":{"name":"SUSE Linux Enterprise Module for Containers 12","product_id":"SUSE Linux Enterprise Module for Containers 12","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-containers:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Containers 15","product":{"name":"SUSE Linux Enterprise Module for Containers 15","product_id":"SUSE Linux Enterprise Module for Containers 15","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-containers:15"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Containers 15 SP1","product":{"name":"SUSE Linux Enterprise Module for Containers 15 SP1","product_id":"SUSE Linux Enterprise Module for Containers 15 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-containers:15:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Containers 15 SP2","product":{"name":"SUSE Linux Enterprise Module for Containers 15 SP2","product_id":"SUSE Linux Enterprise Module for Containers 15 SP2","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-containers:15:sp2"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12","product":{"name":"SUSE Linux Enterprise Server 12","product_id":"SUSE Linux Enterprise Server 12","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12 SP3","product":{"name":"SUSE Linux Enterprise Server 12 SP3","product_id":"SUSE Linux Enterprise Server 12 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12 SP4","product":{"name":"SUSE Linux Enterprise Server 12 SP4","product_id":"SUSE Linux Enterprise Server 12 SP4","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12 SP5","product":{"name":"SUSE Linux Enterprise Server 12 SP5","product_id":"SUSE Linux Enterprise Server 12 SP5","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15","product":{"name":"SUSE Linux Enterprise Server 15","product_id":"SUSE Linux Enterprise Server 15","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP1","product":{"name":"SUSE Linux Enterprise Server 15 SP1","product_id":"SUSE Linux Enterprise Server 15 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP2","product":{"name":"SUSE Linux Enterprise Server 15 SP2","product_id":"SUSE Linux Enterprise Server 15 SP2","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp2"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12","product_id":"SUSE Linux Enterprise Server for SAP Applications 12","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12 SP3","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12 SP4","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12 SP4","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP4","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12 SP5","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12 SP5","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP5","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15","product_id":"SUSE Linux Enterprise Server for SAP Applications 15","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP1","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP2","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP2","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP2","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp2"}}},{"category":"product_name","name":"SUSE Manager Proxy 4.0","product":{"name":"SUSE Manager Proxy 4.0","product_id":"SUSE Manager Proxy 4.0","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-proxy:4.0"}}},{"category":"product_name","name":"SUSE Manager Proxy 4.1","product":{"name":"SUSE Manager Proxy 4.1","product_id":"SUSE Manager Proxy 4.1","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-proxy:4.1"}}},{"category":"product_name","name":"SUSE Manager Retail Branch Server 4.0","product":{"name":"SUSE Manager Retail Branch Server 4.0","product_id":"SUSE Manager Retail Branch Server 4.0","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-retail-branch-server:4.0"}}},{"category":"product_name","name":"SUSE Manager Retail Branch Server 4.1","product":{"name":"SUSE Manager Retail Branch Server 4.1","product_id":"SUSE Manager Retail Branch Server 4.1","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-retail-branch-server:4.1"}}},{"category":"product_name","name":"SUSE Manager Server 4.0","product":{"name":"SUSE Manager Server 4.0","product_id":"SUSE Manager Server 4.0","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-server:4.0"}}},{"category":"product_name","name":"SUSE Manager Server 4.1","product":{"name":"SUSE Manager Server 4.1","product_id":"SUSE Manager Server 4.1","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-server:4.1"}}},{"category":"product_name","name":"SUSE OpenStack Cloud 6","product":{"name":"SUSE OpenStack Cloud 6","product_id":"SUSE OpenStack Cloud 6","product_identification_helper":{"cpe":"cpe:/o:suse:suse-openstack-cloud:6"}}},{"category":"product_name","name":"SUSE OpenStack Cloud 6-LTSS","product":{"name":"SUSE OpenStack Cloud 6-LTSS","product_id":"SUSE OpenStack Cloud 6-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:suse-openstack-cloud-ltss:6"}}},{"category":"product_version","name":"docker","product":{"name":"docker","product_id":"docker","product_identification_helper":{"cpe":"cpe:2.3:a:mobyproject:moby:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/docker@?upstream=docker.src.rpm"}}},{"category":"product_version","name":"docker-bash-completion","product":{"name":"docker-bash-completion","product_id":"docker-bash-completion","product_identification_helper":{"cpe":"cpe:2.3:a:mobyproject:moby:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/docker-bash-completion@?upstream=docker.src.rpm"}}},{"category":"product_version","name":"docker-kubic","product":{"name":"docker-kubic","product_id":"docker-kubic","product_identification_helper":{"cpe":"cpe:2.3:a:mobyproject:moby:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/docker-kubic@?upstream=docker.src.rpm"}}}],"category":"product_family","name":"SUSE Linux Enterprise"}],"category":"vendor","name":"SUSE"}],"relationships":[{"category":"default_component_of","full_product_name":{"name":"docker as component of Magnum Orchestration 7","product_id":"Magnum Orchestration 7:docker"},"product_reference":"docker","relates_to_product_reference":"Magnum Orchestration 7"},{"category":"default_component_of","full_product_name":{"name":"docker-kubic as component of SUSE CaaS Platform 3.0","product_id":"SUSE CaaS Platform 3.0:docker-kubic"},"product_reference":"docker-kubic","relates_to_product_reference":"SUSE CaaS Platform 3.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE CaaS Platform 3.0","product_id":"SUSE CaaS Platform 3.0:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE CaaS Platform 3.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Container as a Service Platform 2.0","product_id":"SUSE Container as a Service Platform 2.0:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Container as a Service Platform 2.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 12","product_id":"SUSE Linux Enterprise Server 12:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 12"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 12","product_id":"SUSE Linux Enterprise Server for SAP Applications 12:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise High Performance Computing 12","product_id":"SUSE Linux Enterprise High Performance Computing 12:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 12"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 12 SP3","product_id":"SUSE Linux Enterprise Server 12 SP3:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 12 SP3"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 12 SP3","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP3:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12 SP3"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 12 SP4","product_id":"SUSE Linux Enterprise Server 12 SP4:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 12 SP4"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 12 SP4","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP4:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12 SP4"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 12 SP5","product_id":"SUSE Linux Enterprise Server 12 SP5:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 12 SP5"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP5:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12 SP5"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Module for Containers 12","product_id":"SUSE Linux Enterprise Module for Containers 12:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 12"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 15","product_id":"SUSE Linux Enterprise Server 15:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 15"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server 15","product_id":"SUSE Linux Enterprise Server 15:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server 15"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 15","product_id":"SUSE Linux Enterprise Server for SAP Applications 15:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server for SAP Applications 15","product_id":"SUSE Linux Enterprise Server for SAP Applications 15:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise High Performance Computing 15","product_id":"SUSE Linux Enterprise High Performance Computing 15:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise High Performance Computing 15","product_id":"SUSE Linux Enterprise High Performance Computing 15:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Module for Containers 15","product_id":"SUSE Linux Enterprise Module for Containers 15:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Module for Containers 15","product_id":"SUSE Linux Enterprise Module for Containers 15:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 15 SP1","product_id":"SUSE Linux Enterprise Server 15 SP1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server 15 SP1","product_id":"SUSE Linux Enterprise Server 15 SP1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise High Performance Computing 15 SP1","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise High Performance Computing 15 SP1","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Server 4.0","product_id":"SUSE Manager Server 4.0:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Server 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Server 4.0","product_id":"SUSE Manager Server 4.0:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Server 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Proxy 4.0","product_id":"SUSE Manager Proxy 4.0:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Proxy 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Proxy 4.0","product_id":"SUSE Manager Proxy 4.0:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Proxy 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Retail Branch Server 4.0","product_id":"SUSE Manager Retail Branch Server 4.0:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Retail Branch Server 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Retail Branch Server 4.0","product_id":"SUSE Manager Retail Branch Server 4.0:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Retail Branch Server 4.0"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Enterprise Storage 6","product_id":"SUSE Enterprise Storage 6:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Enterprise Storage 6"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Enterprise Storage 6","product_id":"SUSE Enterprise Storage 6:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Enterprise Storage 6"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Module for Containers 15 SP1","product_id":"SUSE Linux Enterprise Module for Containers 15 SP1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Module for Containers 15 SP1","product_id":"SUSE Linux Enterprise Module for Containers 15 SP1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15 SP1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server 15 SP2","product_id":"SUSE Linux Enterprise Server 15 SP2:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server 15 SP2","product_id":"SUSE Linux Enterprise Server 15 SP2:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP2:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP2:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise High Performance Computing 15 SP2","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP2:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise High Performance Computing 15 SP2","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP2:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Server 4.1","product_id":"SUSE Manager Server 4.1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Server 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Server 4.1","product_id":"SUSE Manager Server 4.1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Server 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Proxy 4.1","product_id":"SUSE Manager Proxy 4.1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Proxy 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Proxy 4.1","product_id":"SUSE Manager Proxy 4.1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Proxy 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Manager Retail Branch Server 4.1","product_id":"SUSE Manager Retail Branch Server 4.1:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Manager Retail Branch Server 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Manager Retail Branch Server 4.1","product_id":"SUSE Manager Retail Branch Server 4.1:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Manager Retail Branch Server 4.1"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Enterprise Storage 7","product_id":"SUSE Enterprise Storage 7:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Enterprise Storage 7"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Enterprise Storage 7","product_id":"SUSE Enterprise Storage 7:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Enterprise Storage 7"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE Linux Enterprise Module for Containers 15 SP2","product_id":"SUSE Linux Enterprise Module for Containers 15 SP2:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker-bash-completion as component of SUSE Linux Enterprise Module for Containers 15 SP2","product_id":"SUSE Linux Enterprise Module for Containers 15 SP2:docker-bash-completion"},"product_reference":"docker-bash-completion","relates_to_product_reference":"SUSE Linux Enterprise Module for Containers 15 SP2"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE OpenStack Cloud 6","product_id":"SUSE OpenStack Cloud 6:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE OpenStack Cloud 6"},{"category":"default_component_of","full_product_name":{"name":"docker as component of SUSE OpenStack Cloud 6-LTSS","product_id":"SUSE OpenStack Cloud 6-LTSS:docker"},"product_reference":"docker","relates_to_product_reference":"SUSE OpenStack Cloud 6-LTSS"}]},"vulnerabilities":[{"cve":"CVE-2020-14300","ids":[{"system_name":"SUSE CVE Page","text":"https://www.suse.com/security/cve/CVE-2020-14300"}],"notes":[{"category":"general","text":"The docker packages version docker-1.13.1-108.git4ef4b30.el7 as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:0053 (https://access.redhat.com/errata/RHBA-2020:0053) included an incorrect version of runc that was missing multiple bug and security fixes. One of the fixes regressed in that update was the fix for CVE-2016-9962, that was previously corrected in the docker packages in Red Hat Enterprise Linux 7 Extras via RHSA-2017:0116 (https://access.redhat.com/errata/RHSA-2017:0116). The CVE-2020-14300 was assigned to this security regression and it is specific to the docker packages produced by Red Hat. The original issue - CVE-2016-9962 - could possibly allow a process inside container to compromise a process entering container namespace and execute arbitrary code outside of the container. This could lead to compromise of the container host or other containers running on the same container host. This issue only affects a single version of Docker, 1.13.1-108.git4ef4b30, shipped in Red Hat Enterprise Linux 7. Both earlier and later versions are not affected.","title":"CVE description"}],"product_status":{"known_not_affected":["Magnum Orchestration 7:docker","SUSE CaaS Platform 3.0:docker","SUSE CaaS Platform 3.0:docker-kubic","SUSE Container as a Service Platform 2.0:docker","SUSE Enterprise Storage 6:docker","SUSE Enterprise Storage 6:docker-bash-completion","SUSE Enterprise Storage 7:docker","SUSE Enterprise Storage 7:docker-bash-completion","SUSE Linux Enterprise High Performance Computing 12:docker","SUSE Linux Enterprise High Performance Computing 15 SP1:docker","SUSE Linux Enterprise High Performance Computing 15 SP1:docker-bash-completion","SUSE Linux Enterprise High Performance Computing 15 SP2:docker","SUSE Linux Enterprise High Performance Computing 15 SP2:docker-bash-completion","SUSE Linux Enterprise High Performance Computing 15:docker","SUSE Linux Enterprise High Performance Computing 15:docker-bash-completion","SUSE Linux Enterprise Module for Containers 12:docker","SUSE Linux Enterprise Module for Containers 15 SP1:docker","SUSE Linux Enterprise Module for Containers 15 SP1:docker-bash-completion","SUSE Linux Enterprise Module for Containers 15 SP2:docker","SUSE Linux Enterprise Module for Containers 15 SP2:docker-bash-completion","SUSE Linux Enterprise Module for Containers 15:docker","SUSE Linux Enterprise Module for Containers 15:docker-bash-completion","SUSE Linux Enterprise Server 12 SP3:docker","SUSE Linux Enterprise Server 12 SP4:docker","SUSE Linux Enterprise Server 12 SP5:docker","SUSE Linux Enterprise Server 12:docker","SUSE Linux Enterprise Server 15 SP1:docker","SUSE Linux Enterprise Server 15 SP1:docker-bash-completion","SUSE Linux Enterprise Server 15 SP2:docker","SUSE Linux Enterprise Server 15 SP2:docker-bash-completion","SUSE Linux Enterprise Server 15:docker","SUSE Linux Enterprise Server 15:docker-bash-completion","SUSE Linux Enterprise Server for SAP Applications 12 SP3:docker","SUSE Linux Enterprise Server for SAP Applications 12 SP4:docker","SUSE Linux Enterprise Server for SAP Applications 12 SP5:docker","SUSE Linux Enterprise Server for SAP Applications 12:docker","SUSE Linux Enterprise Server for SAP Applications 15 SP1:docker","SUSE Linux Enterprise Server for SAP Applications 15 SP1:docker-bash-completion","SUSE Linux Enterprise Server for SAP Applications 15 SP2:docker","SUSE Linux Enterprise Server for SAP Applications 15 SP2:docker-bash-completion","SUSE Linux Enterprise Server for SAP Applications 15:docker","SUSE Linux Enterprise Server for SAP Applications 15:docker-bash-completion","SUSE Manager Proxy 4.0:docker","SUSE Manager Proxy 4.0:docker-bash-completion","SUSE Manager Proxy 4.1:docker","SUSE Manager Proxy 4.1:docker-bash-completion","SUSE Manager Retail Branch Server 4.0:docker","SUSE Manager Retail Branch Server 4.0:docker-bash-completion","SUSE Manager Retail Branch Server 4.1:docker","SUSE Manager Retail Branch Server 4.1:docker-bash-completion","SUSE Manager Server 4.0:docker","SUSE Manager Server 4.0:docker-bash-completion","SUSE Manager Server 4.1:docker","SUSE Manager Server 4.1:docker-bash-completion","SUSE OpenStack Cloud 6-LTSS:docker","SUSE OpenStack Cloud 6:docker"]},"references":[{"category":"external","summary":"CVE-2020-14300","url":"https://www.suse.com/security/cve/CVE-2020-14300"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1173425 for CVE-2020-14300","url":"https://bugzilla.suse.com/1173425"}],"threats":[{"category":"impact","date":"2020-06-23T19:40:02Z","details":"important"}],"title":"CVE-2020-14300"}]}