First published: Thu Sep 12 2024(Updated: )
A remote code execution (RCE) vulnerability via crafted extension description/changelog could be abused by a malicious extension in Docker Desktop before 4.34.2.
Credit: security@docker.com
Affected Software | Affected Version | How to fix |
---|---|---|
Docker Desktop | <4.34.2 |
Update Docker Desktop to 4.34.2 or a later version
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.