CVE-2022-25365

Docker Desktop before 4.5.1 on Windows allows attackers to move arbitrary files. NOTE: this issue exists because of an incomplete fix for CVE-2022-23774.
References
Link Resource
https://docs.docker.com/desktop/windows/release-notes/ Patch Release Notes Vendor Advisory
https://security.netapp.com/advisory/ntap-20220331-0001/ Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:docker:docker:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-02-19 02:15

Updated : 2022-06-03 14:17


NVD link : CVE-2022-25365

Mitre link : CVE-2022-25365

CVE.ORG link : CVE-2022-25365


JSON object : View

Products Affected

docker

  • docker

microsoft

  • windows