CVE Tools

CVE-2026-79994

Docker Sandboxes UDS forwarder can reach arbitrary host Unix sockets through a symlink race

No known exploitation. EPSS puts it in the 3rd percentile. Only a workaround so far.

Published Updated Sources: CVE.org, NVD

What to do

No fixed build is published yet. The vendor describes a workaround.

Steps

Written by AI from the record
  1. Check whether you run Docker Sandboxes and have the guest-to-host Unix-domain socket relay feature configured.
  2. Upgrade Docker Sandboxes to version 0.42.0 or later.
  3. If upgrading is delayed, use --clone mode and avoid additional read-write host mounts.
  4. Review sandbox activity and host-service logs for unexpected connections from sandbox workloads.

What it is

From the CVE record

The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a socket path is inside an authorized workspace, but later reconnects using the pathname. A malicious guest can replace an intermediate directory with a symlink between validation and connection, causing the host to connect to an arbitrary AF_UNIX socket outside the shared workspace. This can expose data or host-side capabilities provided by the targeted socket.

In plain language

Written by AI from the record

Docker Sandboxes before 0.42.0 can let harmful code inside a sandbox reach protected parts of the host computer; act now if you use its guest-to-host socket relay.

CWE-367 time-of-check/time-of-use symlink race in Docker Sandboxes’ guest-to-host Unix-domain socket relay can redirect a validated workspace socket path to an arbitrary host AF_UNIX socket.

If you're affected

  • Host service access
  • Sensitive data exposure
  • Host file modification
  • Sandbox escape
  • Operational disruption

Exploitation

Where each signal puts this CVE on the scale from published to confirmed exploited.

EPSS3rd
CISA KEV

Not in the catalog. CISA has not confirmed exploitation.

Public exploits

No public exploit or proof of concept found in the sources we track.

EPSS

0.1% chance of exploitation activity in the next 30 days, which ranks it in the 3rd percentile of scored CVEs.

Exploit Prediction Scoring System, FIRST.org. A probability, not a confirmation.

Lifecycle

9 events over 1 day, from the signal feeds we watch.

  1. Workaround availableworkaround available, record updated, record updated
  2. Workaround availablepublished, weakness classified, att&ck mapped, record updated

Affected products

Technical detail

Weaknesses

ATT&CK techniques

Mapped from the weaknesses above (CWE to ATT&CK), not observed in attacks.

Sources

Watch the software you run.

My Stack ranks new CVEs for your products by real-world exploitation, so the next serious one reaches you without reading every advisory.

We'll flag the next CVE, public exploit or patch for Docker Sandboxes, not every advisory.

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store