216.73.216.6

CVE-2025-3224

· Published 28/04/2025 20:15 · Modified 28/04/2025 20:15

Labels: CVE-2025-3224 2025-04-28CVE-2025-3224CWE-59[email protected]

Essential information

Published
28/04/2025 20:15
Modified
28/04/2025 20:15
Author
Creator
CVSS
7.3 HIGH (v3) 7.3 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability in the update process of Docker Desktop for Windows versions prior to 4.41.0 could allow a local, low-privileged attacker to escalate privileges to SYSTEM. During an update, Docker Desktop attempts to delete files and subdirectories under the path C:\ProgramData\Docker\config with high privileges. However, this directory often does not exist by default, and C:\ProgramData\ allows normal users to create new directories. By creating a malicious Docker\config folder structure at this location, an attacker can force the privileged update process to delete or manipulate arbitrary system files, leading to Elevation of Privilege.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
docker / docker desktop cpe:2.3:a:docker:docker_desktop:<4.41.0:*:*:*:*:*:*

References