Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-77179

Опубликовано: 15 сент. 2026
Источник: nvd
EPSS Низкий

Описание

On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows symlinks when reopening an unlinked file from a stored path. A malicious guest can replace a parent directory with a symlink, escape the shared workspace, and read or modify arbitrary host files as the VMM user, potentially achieving host code execution.

EPSS

Процентиль: 6%
0.0016
Низкий

Дефекты

CWE-59

Связанные уязвимости

github
10 дней назад

On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows symlinks when reopening an unlinked file from a stored path. A malicious guest can replace a parent directory with a symlink, escape the shared workspace, and read or modify arbitrary host files as the VMM user, potentially achieving host code execution.

EPSS

Процентиль: 6%
0.0016
Низкий

Дефекты

CWE-59