QID 378017
Date Published: 2023-02-23
QID 378017: Docker Desktop Multiple Vulnerabilities (4140)
Docker is a set of the platform as a service product that uses OS-level virtualization to deliver software in packages called containers.
Affected Versions:
Docker Desktop Community Edition before 4.14.0
QID Detection Logic:
It checks for vulnerable versions of Docker Desktop
Successful exploitation of this vulnerability can lead to attackers to modify files in container images on the host, from inside a container.
Solution
Customers are advised to upgrade to 4.6.0 or later and can be downloaded from Docker Desktop 4140.
Vendor References
- Docker Desktop -
docs.docker.com/desktop/release-notes/#4140
CVEs related to QID 378017
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Docker Desktop 4.14.0 |
|