#container security
CopyEscape Flaw Turns Docker File Copies Into a Route to Host Root
A flaw in Docker’s archive extraction path can let a hostile container write beyond the destination chosen for a file copy. On Linux systems where the command runs...
Actively Exploited Linux Kernel Race Condition Enables Root and Container Escape
A race condition in Linux’s AF_ALG cryptographic interface can give an unprivileged local attacker root access and may support Docker container escape. CISA lists CVE-2025-39964 as exploited in...
Attackers Exploit Docker and Kubernetes Misconfigurations to Escape Containers and Seize Host Control
Security researchers have documented a wave of attacks exploiting Docker and Kubernetes misconfigurations to break out of containers and take full control of host systems, including supply chain...