CVE-2022-38730 | Docker Desktop up to 4.5 on Windows dockerBackendV2 API WindowsContainerStartRequest data-root toctou
A vulnerability was found in Docker Desktop up to 4.5 on Windows and classified as problematic. Affected by this issue is the function WindowsContainerStartRequest of the component dockerBackendV2 API. The manipulation of the argument data-root leads to time-of-check time-of-use.
This vulnerability is handled as CVE-2022-38730. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.