CVE-2020-13401: Broadcom Sannav

Medium severity, CVSS 6.0. EPSS: 2.9% chance of exploitation in the next 30 days.

An issue was discovered in Docker Engine before 19.03.11. An attacker in a container, with the CAP_NET_RAW capability, can craft IPv6 router advertisements, and consequently spoof external IPv6 hosts, obtain sensitive information, or cause a denial of service.

Affected products

  • Broadcom Sannav: affected versions not specified
  • Debian Debian Linux: version 10.0 only
  • Docker Engine: before 19.03.11 (fixed in 19.03.11)
  • Fedoraproject Fedora: version 31 only; version 32 only

Published 2020-06-02. Last modified 2026-06-17.