QID 378500
Date Published: 2023-06-12
QID 378500: Docker Desktop Multiple Vulnerabilities (4170)
Docker is a set of the platform as a service product that uses OS-level virtualization to deliver software in packages called containers.
Affected Versions:
Docker Desktop Community Edition before 4.17.0
QID Detection Logic:
It checks for vulnerable versions of Docker Desktop
Successful exploitation of this vulnerability can lead to attackers to modify files in container images on the host, from inside a container.
Solution
Customers are advised to upgrade to 4.6.0 or later and can be downloaded from Docker Desktop 4170.
Vendor References
- Docker Desktop -
docs.docker.com/desktop/release-notes/#4170
CVEs related to QID 378500
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Docker Desktop 4.17.0 |
|