First published: Fri Jan 15 2021(Updated: )
Docker Desktop Community before 2.5.0.0 on macOS mishandles certificate checking, leading to local privilege escalation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Docker Docker | <2.5.0.0 | |
Apple macOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3162 is a vulnerability that affects Docker Desktop Community before version 2.5.0.0 on macOS, allowing for local privilege escalation.
CVE-2021-3162 mishandles certificate checking in Docker Desktop Community on macOS, which can be exploited to escalate local privileges.
CVE-2021-3162 has a severity rating of 7.8 (high).
To fix the CVE-2021-3162 vulnerability, update Docker Desktop Community to version 2.5.0.0 or later.
You can find more information about CVE-2021-3162 in the Docker Desktop Community release notes (https://docs.docker.com/docker-for-mac/release-notes/#docker-desktop-community-2500) and on the Twitter account of @_r3ggi (https://twitter.com/_r3ggi).