Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
Docker Sandboxes의 취약점으로 macOS 호스트 파일이 위험에 처하게 되었습니다.
Docker의 보안 공지에 따르면, macOS에서 Docker Sandboxes 가상 머신 내에서 악성 코드가 실행될 경우, 공유된 프로젝트 디렉토리를 벗어나 호스트의 다른 파일을 읽거나 변경할 수 있는 취약점이 발견되었습니다. 이 취약점은 호스트 계정의 권한으로 실행되며, CVE-2026-77179로 식별됩니다. 이 심각한 문제는 Docker의 여러 버전에서 영향을 미칩니다.
A critical vulnerability in Docker Sandboxes allows malicious code to access macOS host files.
According to a security announcement from Docker, a vulnerability has been discovered in Docker Sandboxes running on macOS that allows malicious code inside the virtual machine to escape the shared project directory and read or modify other host files. This escape occurs with the rights of the host account running the virtual machine. The flaw is identified as CVE-2026-77179 and is rated critical, affecting multiple Docker versions.