First published: Sat Jun 27 2020(Updated: )
com.docker.vmnetd in Docker Desktop 2.3.0.3 allows privilege escalation because of a lack of client verification.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Docker Desktop | =2.3.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-15360 is high with a CVSS score of 7.8.
CVE-2020-15360 allows privilege escalation due to a lack of client verification in com.docker.vmnetd in Docker Desktop 2.3.0.3.
Docker Desktop 2.3.0.3 is affected by CVE-2020-15360.
To fix CVE-2020-15360, it is recommended to update Docker Desktop to a version that includes the necessary security patches.
You can find more information about CVE-2020-15360 in the Docker Desktop release notes and a blog post detailing the privilege escalation vulnerability.