CVE-2022-26659

Docker Desktop installer on Windows in versions before 4.6.0 allows an attacker to overwrite any administrator writable files by creating a symlink in place of where the installer writes its log file. Starting from version 4.6.0, the Docker Desktop installer, when run elevated, will write its log files to a location not writable by non-administrator users.
Configurations

Configuration 1


Information

Published : 2022-03-25 09:15

Updated : 2023-02-01 03:56


NVD link : CVE-2022-26659

Mitre link : CVE-2022-26659

Products Affected
No products.
CWE