Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <arL4KjK6qLHeF1S9@definition.pseudorandom.co.uk>
Date: Tue, 22 Sep 2026 22:50:34 +0100
From: Simon McVittie <smcv@...ian.org>
To: oss-security@...ts.openwall.com
Subject: Re: bubblewrap 0.12.0 fixes writes outside sandbox

On Thu, 27 Aug 2026 at 23:04:23 +0100, Simon McVittie wrote:
>bubblewrap 0.12.0 fixes a security vulnerability
>involving symlink traversal during container setup:
><https://github.com/containers/bubblewrap/security/advisories/GHSA-pxhw-h44j-8pfx>.

CVE-2026-87766 was assigned.

     smcv

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.