https://reddit.com/r/cybersecurity/comments/1vlkrp9/copyescape_containertohost_arbitrary_file_write/: CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
Published Aug 11, 2026
·Updated
Affected Software
4 affected components
Docker Docker Engine<29.7.2
Docker Docker CLI<29.7.2
Docker Docker Desktop<4.86.0
Docker Docker Sandboxes<0.38.0
Frequently Asked Questions
1
What is the severity of CVE-2026-17106?
CVE-2026-17106 is considered to have a high severity due to its potential impact on host file systems.
2
How do I fix CVE-2026-17106?
To mitigate CVE-2026-17106, update your Docker installation to the latest version that addresses this vulnerability.
3
What types of systems are affected by CVE-2026-17106?
CVE-2026-17106 affects Docker Engine, Docker CLI, Docker Desktop, and Docker Sandboxes.
4
What is the nature of the vulnerability in CVE-2026-17106?
CVE-2026-17106 allows an attacker to perform arbitrary file writes on the host operating system from a compromised Docker container.
5
When was CVE-2026-17106 published?
CVE-2026-17106 was published on August 11, 2026.