An Empirical Study on Security Vulnerabilities in Online Docker Images

dc.contributor.advisorRobinson, Mark
dc.contributor.authorZou, Xiaochen
dc.contributor.committeeMemberWhite, Greg
dc.contributor.committeeMemberSlavin, Rocky
dc.date.accessioned2024-03-08T17:41:04Z
dc.date.available2024-03-08T17:41:04Z
dc.date.issued2020
dc.descriptionThis item is available only to currently enrolled UTSA students, faculty or staff. To download, navigate to Log In in the top right-hand corner of this screen, then select Log in with my UTSA ID.
dc.description.abstractThis paper presents an empirical study on the security vulnerabilities in docker images that are public available at Docker Hub repository. To perform the study, I developed an automatic tool ImageCheck to collect installed libraries in a docker image and check the library versions against the CVE database to detect potential vulnerabilities in docker images. The study uses 1,487 most downloaded free docker images as subjects and considers all CVE vulnerabilities published from Jan. 2018 to Feb. 2020. ImageCheck detects 507 vulnerabilities from 250 docker images, and the study results show that these vulnerabilities cover a large number of docker image categories and vulnerability categories.
dc.description.departmentComputer Science
dc.format.extent60 pages
dc.format.mimetypeapplication/pdf
dc.identifier.isbn9798645478193
dc.identifier.urihttps://hdl.handle.net/20.500.12588/6230
dc.languageen
dc.subjectDocker
dc.subjectsecurity
dc.subjectsoftware
dc.subject.classificationComputer science
dc.titleAn Empirical Study on Security Vulnerabilities in Online Docker Images
dc.typeThesis
dc.type.dcmiText
dcterms.accessRightspq_closed
thesis.degree.departmentComputer Science
thesis.degree.grantorUniversity of Texas at San Antonio
thesis.degree.levelMasters
thesis.degree.nameMaster of Science

Files

Original bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
zou_utsa_1283M_13054.pdf
Size:
1.67 MB
Format:
Adobe Portable Document Format