Google · Gvisor · CVE-2026-95702
**Name of the Vulnerable Software and Affected Versions**
gVisor versions prior to 20260831.0
**Description**
A use-after-free issue exists in the VFS (Virtual File System) that allows a local attacker with standard container privileges to achieve code execution in the host sentry process. This is accomplished by double-freeing the backing `MemoryFile` from an in-sandbox overlay filesystem. The sentry process remains confined by host-level Linux seccomp (a system call filter) and namespace boundaries.
**Recommendations**
Update gVisor to version 20260831.0 or later.