CVE-2022-38730 | Docker Desktop up to 4.5 on Windows dockerBackendV2 API WindowsContainerStartRequest data-root toctou (EUVD-2022-41297)
A vulnerability marked as problematic has been reported in Docker Desktop up to 4.5 on Windows. Affected by this vulnerability is the function WindowsContainerStartRequest of the component dockerBackendV2 API. This manipulation of the argument data-root causes time-of-check time-of-use.
This vulnerability appears as CVE-2022-38730. The attacker needs to be present on the local network. There is no available exploit.
It is suggested to upgrade the affected component.