Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Mikhail Sosonkin

#33424of 57,667
8.5Total CVSS
Vulnerabilities · 1
PT-2026-108951
8.5
2026-10-09
Google · Gvisor · CVE-2026-95702
**Name of the Vulnerable Software and Affected Versions** gVisor versions prior to 20260831.0 **Description** A use-after-free issue exists in the VFS (Virtual File System) that allows a local attacker with standard container privileges to achieve code execution in the host sentry process. This is accomplished by double-freeing the backing `MemoryFile` from an in-sandbox overlay filesystem. The sentry process remains confined by host-level Linux seccomp (a system call filter) and namespace boundaries. **Recommendations** Update gVisor to version 20260831.0 or later.