🔐 CVE Alert

CVE-2026-2664

UNKNOWN 0.0

Out of bounds read vulnerability in grpcfuse kernel module

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

An out of bounds read vulnerability in the grpcfuse kernel module present in the Linux VM in Docker Desktop for Windows, Linux and macOS up to version 4.61.0 could allow a local attacker to cause an unspecified impact by writing to /proc/docker entries. The issue has been fixed in Docker Desktop 4.62.0 .

CWE CWE-125
Vendor docker
Product docker desktop
Ecosystems
Industries
Technology
Published Feb 24, 2026
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for docker docker desktop

Be the first to know when new unknown vulnerabilities affecting docker docker desktop are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Docker / Docker Desktop
0 < 4.62.0

References

NVD ↗ CVE.org ↗ EPSS Data ↗
docs.docker.com: https://docs.docker.com/desktop/release-notes/#4620

Credits

Pumpkin (@u1f383) from DEVCORE Research Team working with TrendAI Zero Day Initiative