[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256610

 
 

909

 
 

199263

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Information disclosure vulnerability in Docker Desktop - CVE-2023-1802 (Mac OS)

ID: oval:org.secpod.oval:def:88884Date: (C)2023-04-07   (M)2023-12-03
Class: VULNERABILITYFamily: macos




The host is installed with Docker Desktop 4.17.x and is prone to an information disclosure vulnerability. A flaw is present in the application, which fails to handle the Artifactory Integration falling back to sending registry credentials over plain HTTP instead of HTTPS. Successful exploitation could allow attackers to perform a targeted network sniffing attack which can lead to a disclosure of sensitive information.

Platform:
Apple Mac OS 14
Apple Mac OS 11
Apple Mac OS 12
Apple Mac OS 13
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Apple Mac OS X 10.13
Apple Mac OS X 10.14
Apple Mac OS X 10.15
Product:
Docker Desktop
Reference:
CVE-2023-1802
CVE    1
CVE-2023-1802

© SecPod Technologies