PT-2026-21675 · Grpcfuse+1 · Grpcfuse+1

Pumpkin

·

Published

2026-02-24

·

Updated

2026-03-26

·

CVE-2026-2664

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Docker Desktop versions prior to 4.62.0
Description An out of bounds read issue exists in the grpcfuse kernel module within the Linux VM used by Docker Desktop for Windows, Linux, and macOS. This could allow a local attacker to potentially cause harm by writing to /proc/docker entries. The vulnerable component is the grpcfuse kernel module.
Recommendations Update to Docker Desktop version 4.62.0 or later.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2026-2664
ZDI-26-125

Affected Products

Docker Desktop
Grpcfuse