cve/2022/CVE-2022-38730.md
2024-06-18 02:51:15 +02:00

926 B

CVE-2022-38730

Description

Docker Desktop for Windows before 4.6 allows attackers to overwrite any file through the windowscontainers/start dockerBackendV2 API by controlling the data-root field inside the DaemonJSON field in the WindowsContainerStartRequest class. This allows exploiting a symlink vulnerability in ..\dataRoot\network\files\local-kv.db because of a TOCTOU race condition.

POC

Reference

Github

No PoCs found on GitHub currently.