CVE-2024-36620

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
29/11/2024
Last modified:
05/09/2025

Description

moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mobyproject:moby:*:*:*:*:*:*:*:* 25.0.0 (including) 26.0.2 (including)