logo

Docker Desktop Security Update Advisory (CVE-2024-8695, CVE-2024-8696)

ID: 9cdc9f46-4492-5d62-9955-f7891af9340f

STIX ID: report--9cdc9f46-4492-5d62-9955-f7891af9340f

Feed Name: ASEC

Threat Score
65/100

Date Published: 2024-09-18

Date Updated: 2026-04-26

Author: ATCP

...
...

Docker has released an update fixing two vulnerabilities (CVE-2024-8695 and CVE-2024-8696) in Docker Desktop that could allow malicious extensions to achieve remote code execution by using crafted extension descriptions/change logs or publisher/additional URLs; users should update to Docker Desktop 4.34.2 as documented in the release notes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.