Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15788

Опубликовано: 20 июл. 2026
Источник: redhat
CVSS3: 6.3
EPSS Низкий

Описание

BuildKit's cache mount source= selector on Windows Container on Windows (WCOW) workers does not detect NTFS directory junctions placed inside the cache root. A build authored by an untrusted user on a WCOW-configured BuildKit daemon can read arbitrary host files reachable to the BuildKit daemon process.

A flaw was found in BuildKit. An untrusted user, when authoring a build on a Windows Container on Windows (WCOW) configured BuildKit daemon, can exploit a vulnerability in the cache mount source selector. This flaw allows the user to read arbitrary files from the host system, leading to information disclosure.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2502989github.com/moby/buildkit: BuildKit: Information Disclosure via Improper Handling of NTFS Directory Junctions

EPSS

Процентиль: 20%
0.00274
Низкий

6.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
21 день назад

BuildKit's cache mount source= selector on Windows Container on Windows (WCOW) workers does not detect NTFS directory junctions placed inside the cache root. A build authored by an untrusted user on a WCOW-configured BuildKit daemon can read arbitrary host files reachable to the BuildKit daemon process.

msrc
2 дня назад

WCOW cache mount source selector resolves NTFS junctions outside of cache root

CVSS3: 7.5
debian
21 день назад

BuildKit's cache mount source= selector on Windows Container on Window ...

EPSS

Процентиль: 20%
0.00274
Низкий

6.3 Medium

CVSS3