CVE-2026-61712
ADVISORY - githubSummary
Impact
Maliciously crafted base image or build can cause a Denial of Service (DoS) condition. When creating a container from this image, memory exhaustion occurs, leading to an Out Of Memory (OOM) kill of the buildkitd process.
Patches
Issue is fixed in BuildKit v0.31.1+
Workarounds
Use trusted build sources.
References
This is BuildKit variant of containerd advisory https://github.com/containerd/containerd/security/advisories/GHSA-jpcc-p29g-p8mq
NIST
-
CVSS SCORE
2.3lowGitHub
-
CVSS SCORE
2.3lowChainguard
CGA-wv54-vpgj-v2jq
-
minimos
MINI-237g-xfvh-2wjx
-
minimos
MINI-3mh9-xwj3-888p
-
minimos
MINI-4fmr-85cf-cq68
-
minimos
MINI-553p-h93r-j8rw
-
minimos
MINI-5f5q-2hvr-hp5j
-
minimos
MINI-66qh-chw4-ppxj
-
minimos
MINI-6fq9-38g7-h23x
-
minimos
MINI-7pvh-57wq-4837
-
minimos
MINI-92gq-r73m-3f9f
-
minimos
MINI-96x8-j5qp-q6jm
-
minimos
MINI-9xc3-46mw-5j4q
-
minimos
MINI-h2g6-r686-6vqg
-
minimos
MINI-h8q3-6c23-fvqv
-
minimos
MINI-m436-vxpv-g89r
-
minimos
MINI-mfg8-2hwr-5wfr
-
minimos
MINI-p3pm-pwj2-22gh
-
minimos
MINI-q38r-322m-5jg6
-
minimos
MINI-q555-rj56-pr69
-
minimos
MINI-qm53-8wj3-pm6x
-
minimos
MINI-rqwh-j23w-g8qq
-
minimos
MINI-vvhp-75j9-wxr2
-
minimos
MINI-w73q-q6fj-rc27
-
minimos
MINI-w8wx-fp32-v88c
-
minimos
MINI-xmp4-2mf3-xgxm
-