CVE-2016-3697 | Docker up to 1.12.1 runC user.go UID access control (Nessus ID 91401 / ID 236180)
A vulnerability was found in Docker up to 1.12.1. It has been rated as critical. Affected by this issue is some unknown functionality of the file libcontainer/user/user.go of the component runC. The manipulation of the argument UID leads to improper access controls.
This vulnerability is handled as CVE-2016-3697. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.