Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Mageia 9: 2025-0189 important: docker update for CVE-2024-29018

mageia
Calendar Grey June 24, 2025
Dist Mageia Esm H88
Remote DNS queries may leak sensitive information; upgrade Docker to address vulnerabilities linked to CVE-2024-29018.
External DNS requests from 'internal' networks could lead to data exfiltration - CVE-2024-29018 We can't determine if docker 24.0.5 is affected but as it is no longer supported we ...

Summary

External DNS requests from 'internal' networks could lead to data exfiltration - CVE-2024-29018 We can't determine if docker 24.0.5 is affected but as it is no longer supported we are releasing version 25.0.7, as it is supported and free of the CVE.

References

- https://bugs.mageia.org/show_bug.cgi?id=33870

- External DNS requests from 'internal' networks could lead to data

- https://github.com/moby/moby/security/advisories/GHSA-mq39-4gv4-mvpx

- https://github.com/moby/moby/releases/tag/v25.0.7

- https://www.cve.org/CVERecord?id=CVE-2024-29018

Resolution

SRPMS

- 9/core/docker-25.0.7-1.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 24 Jun 2025
URL: https://advisories.mageia.org/MGASA-2025-0189.html
Type: security
CVE: CVE-2024-29018

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here