CVE-2026-103433
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Summary
Docker Buildx Bake does not request the expected fs.read approval for certain filesystem inputs. An untrusted Bake definition can expose a readable file through a pathless secret whose ID is interpreted as a client-side pathname, or consume a local OCI image layout outside the project after entitlement validation checks a different path representation. Users who run untrusted Bake definitions are affected.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Docker | Docker Buildx | 0 < 0.37.2 | affected |
Weaknesses
- CWE-862: CWE-862: Missing Authorization
Workarounds
Run only trusted Bake definitions until upgrading to v0.37.2 or later. Review Bake definitions for secrets without an explicit source and for local OCI layout contexts.
References
- https://github.com/docker/buildx/security/advisories/GHSA-p54p-jq4x-rc28
- https://github.com/docker/buildx/releases/tag/v0.37.2
- https://github.com/docker/buildx
- https://docs.docker.com/build/bake/reference/#targetentitlements
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.