com.docker.vmnetd in Docker Desktop 2.3.0.3 allows privilege escalation because of a lack of client verification.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://docs.docker.com/docker-for-windows/release-notes/ | release notes vendor advisory |
https://whitehatck01.blogspot.com/2020/06/dockers-latest-version-of-privilege.html | third party advisory exploit |