A path traversal vulnerability was found in gvproxy, the network forwarder provided by the gvisor-tap-vsock package. The unauthenticated /services/forwarder/expose endpoint does not validate the caller-supplied socket path, allowing an attacker to delete arbitrary files on the host system.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 09 Oct 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path traversal vulnerability was found in gvproxy, the network forwarder provided by the gvisor-tap-vsock package. The unauthenticated /services/forwarder/expose endpoint does not validate the caller-supplied socket path, allowing an attacker to delete arbitrary files on the host system. | |
| Title | Gvisor-tap-vsock: gvisor-tap-vsock: unathenticated arbitrary file deletion on the host via /expose | |
| First Time appeared |
Redhat
Redhat certifications Redhat edge Manager Redhat enterprise Linux Redhat hummingbird Redhat openshift Redhat openshift Devspaces Redhat openstack Redhat podman Desktop |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:/a:redhat:certifications:9 cpe:/a:redhat:edge_manager:1 cpe:/a:redhat:hummingbird:1 cpe:/a:redhat:openshift:4 cpe:/a:redhat:openshift_devspaces:3 cpe:/a:redhat:openstack:18.0 cpe:/a:redhat:podman_desktop:1 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat certifications Redhat edge Manager Redhat enterprise Linux Redhat hummingbird Redhat openshift Redhat openshift Devspaces Redhat openstack Redhat podman Desktop |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-10-09T09:05:43.726Z
Reserved: 2026-10-09T08:27:11.041Z
Link: CVE-2026-107935
No data.
Status : Received
Published: 2026-10-09T10:16:37.497
Modified: 2026-10-09T10:16:37.497
Link: CVE-2026-107935
No data.
OpenCVE Enrichment
Updated: 2026-10-09T10:45:05Z
Weaknesses