Skip to content
CVSS 10.0CVSS 10.0 · CRITICAL

CVE-2026-46695

Boxlite is a sandbox service that allows users to create lightweight virtual machines (Boxes) and launch OCI containers within them to run untrusted code. Prior to version 0.9.0, Boxlite does not restrict the kernel capabilities available inside the container, malicious code can remount the directory in rw mode, thereby gaining write access to that directory. This allows malicious code to perform arbitrary write operations on directories that should be read-only. This issue has been patched in version 0.9.0.

Ver en NVD

Análisis

Boxlite presenta una vulnerabilidad crítica que permite a código malicioso remountar directorios de solo lectura con permisos de escritura al no restringir correctamente las capacidades del kernel en contenedores OCI. Un atacante puede aprovechar esto para realizar escrituras arbitrarias y comprometer el aislamiento del sandbox, afectando la integridad del sistema host. Se recomienda actualizar inmediatamente a la versión 0.9.0 para mitigar este riesgo de elevación de privilegios.

Roles relevantes

DockerLinuxCyberSecurityBackendCloud

Severidad

Puntaje: 10.0(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: CHANGED
C: HIGH
I: HIGH
A: NONE
Tipo de falla (CWE): CWE-284

EPSS

Probabilidad de explotación (próx. 30 días): 0.0003 (0.0%)
Percentil: 8.6%
EPSS: 2026-06-11

Descripción técnica

Boxlite is a sandbox service that allows users to create lightweight virtual machines (Boxes) and launch OCI containers within them to run untrusted code. Prior to version 0.9.0, Boxlite does not restrict the kernel capabilities available inside the container, malicious code can remount the directory in rw mode, thereby gaining write access to that directory. This allows malicious code to perform arbitrary write operations on directories that should be read-only. This issue has been patched in version 0.9.0.

Publicada: 10/6/2026, 23:16:47
Última modificación: 11/6/2026, 15:21:07

Referencias

InicioEventosBlogRecursosEquipo