VYPR
High severity7.8NVD Advisory· Published Feb 24, 2026· Updated Jun 17, 2026

CVE-2026-2664

CVE-2026-2664

Description

An out of bounds read vulnerability in the grpcfuse kernel module present in the Linux VM in Docker Desktop for Windows, Linux and macOS up to version 4.61.0 could allow a local attacker to cause an unspecified impact by writing to /proc/docker entries. The issue has been fixed in Docker Desktop 4.62.0 .

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Range: <=4.61.0
  • Docker/Desktopcpe-rescue4 versions
    0+ 3 more
    • (no CPE)range: 0
    • cpe:2.3:a:docker:desktop:*:*:*:*:*:linux:*:*range: <4.62.0
    • cpe:2.3:a:docker:desktop:*:*:*:*:*:macos:*:*range: <4.62.0
    • cpe:2.3:a:docker:desktop:*:*:*:*:*:windows:*:*range: <4.62.0

Patches

Vulnerability mechanics

References

1

News mentions

1