资讯

Docker announced that its native Docker Desktop Windows application will soon switch to the Windows Subsystem for Linux 2 (WSL 2) from the Windows-native Hyper-V virtualization it currently uses.
研究人员发现Docker WindowsPC机版有项服务器端请求伪造(Server-Side Request Forgery,SSRF)漏洞,能让攻击者从Docker容器非授权访问网站、创建高权限容器,甚至取得整台Windows主机的访问权。
Docker Desktop users are unable to execute the WSL command. Some of the victims have just installed Docker Desktop, whereas some of them encountered this issue after updating the application.
Alongside the launch of WSL2, Docker announced a new version of its Docker Desktop for Windows, with a new version of the Docker application that would work with WSL2, supporting native Linux ...
Learn the key differences between Docker Desktop and Docker Engine to optimize containerization, DevOps workflows, and development setups.
Updated Docker Desktop software packages close a security gap that could allow attackers to extend their rights in the system. The Windows version of the container software is affected.
Docker has realized that Microsoft's new Windows Subsystem for Linux 2 has made Windows much more attractive both to Docker and its container developers for both Windows and Linux platforms.
Privilege escalation vulnerability patched in Docker Desktop for Windows The security flaw could be used to trick the service into connecting to malicious processes.
For developers working on Microsoft Windows, Docker Desktop is the most convenient solution. The main consideration with Docker Desktop is its licensing.