Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-15791

Опубликовано: 21 июл. 2026
Источник: debian
EPSS Низкий

Описание

A crafted message in the BuildKit low-level build API can be used to remove the contents of the /tmp directory. The action that can normally be used to delete files inside the build container rootfs can escape into the real host temp directory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-github-moby-buildkititppackage

EPSS

Процентиль: 16%
0.00249
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

A crafted message in the BuildKit low-level build API can be used to remove the contents of the /tmp directory. The action that can normally be used to delete files inside the build container rootfs can escape into the real host temp directory.

CVSS3: 7.5
nvd
около 1 месяца назад

A crafted message in the BuildKit low-level build API can be used to remove the contents of the /tmp directory. The action that can normally be used to delete files inside the build container rootfs can escape into the real host temp directory.

EPSS

Процентиль: 16%
0.00249
Низкий