VYPR
Unrated severityNVD Advisory· Published Mar 25, 2022· Updated Aug 3, 2024

CVE-2022-26659

CVE-2022-26659

Description

Docker Desktop installer on Windows in versions before 4.6.0 allows an attacker to overwrite any administrator writable files by creating a symlink in place of where the installer writes its log file. Starting from version 4.6.0, the Docker Desktop installer, when run elevated, will write its log files to a location not writable by non-administrator users.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Docker/Desktopcpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <4.6.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.