Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Avoid untrusted builds. Rootless mode mitigates device access but not denial of service.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 05 Oct 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Oct 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | BuildKit may be tricked into performing file actions with special file inodes where regular files are expected. Special files may block operations or, on rootful workers, allow unintended host device access. | |
| Title | BuildKit improperly handles special files in build snapshots | |
| Weaknesses | CWE-441 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Docker
Published:
Updated: 2026-10-05T18:52:25.223Z
Reserved: 2026-09-17T17:18:00.217Z
Link: CVE-2026-93320
Updated: 2026-10-05T18:52:16.741Z
Status : Received
Published: 2026-10-05T18:17:38.353
Modified: 2026-10-05T19:17:26.177
Link: CVE-2026-93320
No data.
OpenCVE Enrichment
No data.