NONE · 0

CVE-2026-18171

Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge grant is added to the sandbox's policy-share allowli...

Vulnerability Description

Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge grant is added to the sandbox's policy-share allowlist with no access mode. The directory stays writable at its shared-export path, so unprivileged code inside the sandbox can derive that path and write to a host directory the operator attached read-only.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-18171?

CVE-2026-18171 is a documented vulnerability. Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge grant is added to the sandbox's policy-share allowli...

How severe is CVE-2026-18171?

CVSS scoring is not yet available for CVE-2026-18171. Check NVD for updates.

Is there a patch for CVE-2026-18171?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.