CVE-2026-52791
ADVISORY - debianSummary
fuse-overlayfs is an implementation of overlayfs in FUSE for rootless containers. Prior to 1.17, the release-1.x C branch preserves SUID and SGID mode bits in main.c during open(O_TRUNC) and truncate handling on a copied-up file, allowing a low-privileged process to leave the upper-layer file with mode 4777. This issue is fixed in version 1.17.
EPSS Score: 0.00102 (0.011)
Common Weakness Enumeration (CWE)
ADVISORY - redhat
Improper Preservation of Permissions
Sign in to Docker Scout
See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.
Sign in