Description
Docker Desktop before 3.6.0 suffers from incorrect access control. If a low-privileged account is able to access the server running the Windows containers, it can lead to a full container compromise in both process isolation and Hyper-V isolation modes. This security issue leads an attacker with low privilege to read, write and possibly even execute code inside the containers.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24320 | Docker Desktop before 3.6.0 suffers from incorrect access control. If a low-privileged account is able to access the server running the Windows containers, it can lead to a full container compromise in both process isolation and Hyper-V isolation modes. This security issue leads an attacker with low privilege to read, write and possibly even execute code inside the containers. |
References
| Link | Providers |
|---|---|
| https://docs.docker.com/docker-for-windows/release-notes/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T01:30:08.446Z
Reserved: 2021-08-02T00:00:00.000Z
Link: CVE-2021-37841
No data.
Status : Modified
Published: 2021-08-12T14:15:07.010
Modified: 2024-11-21T06:15:57.333
Link: CVE-2021-37841
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD