{"id":"CGA-mcjp-836f-3567","modified":"2026-09-07T01:43:15.568410613Z","published":"2025-11-04T04:00:31Z","upstream":["CVE-2023-28841","GHSA-33pg-m6jh-5237","GO-2023-1700"],"references":[{"type":"WEB","url":"https://github.com/moby/libnetwork/blob/d9fae4c73daf76c3b0f77e14b45b8bf612ba764d/drivers/overlay/encryption.go#L205-L207"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LYZOKMMVX4SIEHPJW3SJUQGMO5YZCPHC/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XNF4OLYZRQE75EB5TW5N42FSXHBXGWFE/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZTE4ITXXPIWZEQ4HYQCB6N6GZIMWXDAI/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/28xxx/CVE-2023-28841.json"},{"type":"ADVISORY","url":"https://github.com/moby/libnetwork/security/advisories/GHSA-gvm4-2qqg-m333"},{"type":"ADVISORY","url":"https://github.com/moby/moby/security/advisories/GHSA-232p-vwff-86mp"},{"type":"ADVISORY","url":"https://github.com/moby/moby/security/advisories/GHSA-33pg-m6jh-5237"},{"type":"ADVISORY","url":"https://github.com/moby/moby/security/advisories/GHSA-6wrf-mxfj-pf5p"},{"type":"ADVISORY","url":"https://github.com/moby/moby/security/advisories/GHSA-vwm3-crmr-xfxw"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-28841"},{"type":"REPORT","url":"https://github.com/moby/moby/issues/43382"},{"type":"FIX","url":"https://github.com/moby/moby/pull/45118"}],"affected":[{"package":{"name":"up","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/up?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.24.0-r1"}]}],"ecosystem_specific":{"components":[{"component_location":"/usr/bin/up","component_purl":"pkg:golang/github.com/docker/docker@v20.10.19%2Bincompatible","latest_event_status":"fixed","latest_event_timestamp":"2024-02-04T09:23:13Z","component_name":"github.com/docker/docker","component_version":"v20.10.19+incompatible","component_type":"go-module"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-mcjp-836f-3567.json"}},{"package":{"name":"up","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/up?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.24.0-r1"}]}],"ecosystem_specific":{"components":[{"component_version":"v20.10.19+incompatible","component_type":"go-module","component_location":"/usr/bin/up","component_purl":"pkg:golang/github.com/docker/docker@v20.10.19%2Bincompatible","latest_event_status":"fixed","latest_event_timestamp":"2024-02-04T09:23:13Z","component_name":"github.com/docker/docker"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-mcjp-836f-3567.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N"}]}