Skip to content

Commit 266ccef

Browse files
authored
Update 4.57 release notes with mention of CVE-2025-14740 (#24076)
## Description Added mention of CVE-2025-14740 to the release notes of 4.57, as we had fixed it in that version but we didn’t publish the CVE back then. ## Related issues or tickets https://docker.atlassian.net/browse/DKP-2556 ## Reviews <!-- Notes for reviewers here --> <!-- List applicable reviews (optionally @tag reviewers) --> - [ ] Technical review - [ ] Editorial review - [ ] Product review
1 parent 18ed809 commit 266ccef

File tree

1 file changed

+4
-0
lines changed

1 file changed

+4
-0
lines changed

content/manuals/desktop/release-notes.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -138,6 +138,10 @@ For more frequently asked questions, see the [FAQs](/manuals/desktop/troubleshoo
138138

139139
{{< desktop-install-v2 all=true win_arm_release="Early Access" version="4.57.0" build_path="/215387/" >}}
140140

141+
### Security
142+
143+
- Fixed [CVE-2025-14740](https://www.cve.org/cverecord?id=CVE-2025-14740) where the Docker Desktop for Windows installer contained multiple incorrect permission assignment vulnerabilities in the handling of the `C:\ProgramData\DockerDesktop` directory.
144+
141145
### New
142146

143147
- Docker Desktop now has a new issue tracker for all platforms at https://github.com/docker/desktop-feedback. Relevant, actively discussed issues from the previous platform-specific trackers will be migrated.

0 commit comments

Comments
 (0)