{"id":"CVE-2026-17106","title":"github.com/moby/go-archive: moby/go-archive: Arbitrary file write via link following in tar extraction (CVE-2026-17106)","summary":"A flaw was found in moby/go-archive. The tar extraction routines in the component do not properly restrict filesystem operations to the intended destination directory. An attacker who controls the contents of an archive can exploit this by…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cvssSource":"vendor","cwe":["CWE-59","CWE-22"],"vendor":"Red Hat","product":"Red Hat Edge Manager 1.2","affected":["confidential_compute_attestation","kernel_module_management_operator_for_red_hat_openshift","multicluster_engine_for_kubernetes","openshift_developer_tools_and_services","advanced_cluster_management_for_kubernetes 2","build_of_podman_desktop","ceph_storage 9","certification_program_for_red_hat_enterprise_linux 9","enterprise_linux 10","enterprise_linux 9","openshift_ai_rhoai","openshift_container_platform 4","openshift_dev_spaces","openstack_platform 18.0","quay 3","trusted_artifact_signer","web_terminal","enterprise_linux_appstream_v_10","enterprise_linux_appstream_v_9","enterprise_linux_codeready_linux_builder_v_10","logging_subsystem_for_red_hat_openshift 6.6","multicluster_global_hub 1.8.2","edge_manager 1.2","hardened_images"],"patched":["enterprise_linux_appstream_v_10","enterprise_linux_appstream_v_9","enterprise_linux_codeready_linux_builder_v_10","logging_subsystem_for_red_hat_openshift 6.6","multicluster_global_hub 1.8.2","edge_manager 1.2","hardened_images"],"published":"2026-08-18","updated":"2026-09-23","sourceUpdated":"2026-09-23T14:27:23+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-17106.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-17106.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-17106"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2518147"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-17106"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-17106"},{"url":"https://docs.docker.com/desktop/release-notes/#4860"},{"url":"https://docs.docker.com/engine/release-notes/29/#2970"},{"url":"https://github.com/docker/cli/releases/tag/v29.7.0"},{"url":"https://github.com/docker/compose/releases/tag/v5.4.0"},{"url":"https://github.com/docker/sbx-releases/releases/tag/v0.38.0"},{"url":"https://github.com/moby/go-archive/releases/tag/v0.3.0"},{"url":"https://github.com/moby/go-archive/security/advisories/GHSA-hfg8-hc9c-6c3h"},{"url":"https://access.redhat.com/errata/RHSA-2026:70201"},{"url":"https://access.redhat.com/errata/RHSA-2026:69961"},{"url":"https://access.redhat.com/errata/RHSA-2026:66521"},{"url":"https://access.redhat.com/errata/RHSA-2026:68515"},{"url":"https://access.redhat.com/errata/RHSA-2026:68006"},{"url":"https://access.redhat.com/errata/RHSA-2026:68254"},{"url":"https://access.redhat.com/errata/RHSA-2026:52807"},{"url":"https://github.com/moby/moby/issues/52948"},{"url":"https://github.com/bikini/exploitarium/tree/main/docker-cp-copyout-destination-escape"},{"url":"https://github.com/moby/moby/releases/tag/docker-v29.7.0"},{"url":"https://www.imperva.com/blog/copyescape-taking-over-docker-hosts-with-docker-cp"},{"url":"https://github.com/advisories/GHSA-hfg8-hc9c-6c3h"}],"tags":["csaf","vex","red-hat","exploit-available","ghsa","go"],"epss":0.00325,"epssPercentile":0.25808,"exploits":{"github":3,"githubRepos":["https://github.com/masasron/CopyEscape-CVE-2026-17106","https://github.com/HackSpeak/CVE-2026-17106","https://github.com/686f6c61/POC-CopyEscape-CVE-2026-17106"],"checkedAt":"2026-09-24T07:40:06.456Z"},"exploitAvailable":true,"aliases":["GHSA-hfg8-hc9c-6c3h"],"ecosystem":"go","ingestedAt":"2026-08-18T21:22:59.437Z","slug":"CVE-2026-17106","body":"## Overview\n\nA flaw was found in moby/go-archive. The tar extraction routines in the component do not properly restrict filesystem operations to the intended destination directory. An attacker who controls the contents of an archive can exploit this by including symbolic links, allowing them to create or overwrite files at arbitrary locations on the system where the archive is being extracted. This could lead to unauthorized modification of system files or potentially arbitrary code execution.\n\n## Vendor advisories\n\n- **RHSA-2026:70201** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream (v. 10), Red Hat Enterprise Linux CodeReady Linux Builder (v. 10) · released 2026-09-22 · [advisory](https://access.redhat.com/errata/RHSA-2026:70201)\n- **RHSA-2026:69961** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream (v. 9) · released 2026-09-22 · [advisory](https://access.redhat.com/errata/RHSA-2026:69961)\n- **RHSA-2026:66521** · Red Hat · fixed in: Logging Subsystem for Red Hat OpenShift 6.6 · released 2026-09-10 · [advisory](https://access.redhat.com/errata/RHSA-2026:66521)\n- **RHSA-2026:68515** · Red Hat · fixed in: Multicluster Global Hub 1.8.2 · released 2026-09-17 · [advisory](https://access.redhat.com/errata/RHSA-2026:68515)\n- **RHSA-2026:68006** · Red Hat · fixed in: Red Hat Edge Manager 1.2 · released 2026-09-16 · [advisory](https://access.redhat.com/errata/RHSA-2026:68006)\n- **RHSA-2026:68254** · Red Hat · fixed in: Red Hat Edge Manager 1.2 · released 2026-09-16 · [advisory](https://access.redhat.com/errata/RHSA-2026:68254)\n- **RHSA-2026:52807** · Red Hat · fixed in: Red Hat Hardened Images · released 2026-08-10 · [advisory](https://access.redhat.com/errata/RHSA-2026:52807)\n- **Red Hat VEX** · Important · affected: Confidential Compute Attestation, Kernel Module Management Operator for Red Hat Openshift, Multicluster Engine for Kubernetes, OpenShift Developer Tools and Services, Red Hat Advanced Cluster Management for Kubernetes 2, Red Hat Build of Podman Desktop, … · no fix planned: Multicluster Engine for Kubernetes, Red Hat Ceph Storage 9, Confidential Compute Attestation, Kernel Module Management Operator for Red Hat Openshift, … · updated 2026-09-23 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-17106.json)\n\n**github.com/moby/go-archive: moby/go-archive: Arbitrary file write via link following in tar extraction** — rated Important by Red Hat. Released 2026-08-18, updated 2026-09-23.\n\nAffected:\n\n- Confidential Compute Attestation\n- Kernel Module Management Operator for Red Hat Openshift\n- Multicluster Engine for Kubernetes\n- OpenShift Developer Tools and Services\n- Red Hat Advanced Cluster Management for Kubernetes 2\n- Red Hat Build of Podman Desktop\n- Red Hat Ceph Storage 9\n- Red Hat Certification Program for Red Hat Enterprise Linux 9\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift AI (RHOAI)\n- Red Hat OpenShift Container Platform 4\n- Red Hat OpenShift Dev Spaces\n- Red Hat OpenStack Platform 18.0\n- Red Hat Quay 3\n- Red Hat Trusted Artifact Signer\n- Red Hat Web Terminal\n\nFixed:\n\n- Red Hat Enterprise Linux AppStream (v. 10)\n- Red Hat Enterprise Linux AppStream (v. 9)\n- Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)\n- Logging Subsystem for Red Hat OpenShift 6.6\n- Multicluster Global Hub 1.8.2\n- Red Hat Edge Manager 1.2\n- Red Hat Hardened Images\n\nNo fix planned:\n\n- Multicluster Engine for Kubernetes\n- Red Hat Ceph Storage 9\n- Confidential Compute Attestation\n- Kernel Module Management Operator for Red Hat Openshift\n- OpenShift Developer Tools and Services\n- Red Hat Advanced Cluster Management for Kubernetes 2\n- Red Hat Build of Podman Desktop\n- Red Hat Certification Program for Red Hat Enterprise Linux 9\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift AI (RHOAI)\n- Red Hat OpenShift Container Platform 4\n- Red Hat OpenShift Dev Spaces\n- Red Hat OpenStack Platform 18.0\n- Red Hat Quay 3\n- Red Hat Trusted Artifact Signer\n- Red Hat Web Terminal\n\nNot affected:\n\n- Logging Subsystem for Red Hat OpenShift 6.6\n- Multicluster Global Hub 1.8.2\n- Red Hat Edge Manager 1.2\n- Cryostat 4\n- Red Hat Advanced Cluster Management for Kubernetes 2\n- Red Hat Build of Kueue\n- Red Hat Edge Manager 1\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 9\n- Red Hat Hardened Images\n\n## Remediation\n\nFor details on how to apply this update, which includes the changes described in this advisory, refer to:\n\nhttps://access.redhat.com/articles/11258 https://access.redhat.com/errata/RHSA-2026:70201\nBefore applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258 https://access.redhat.com/errata/RHSA-2026:69961\nFor OpenShift Container Platform 4.22 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:\n\nhttps://docs.redhat.com/en/documentation/openshift_container_platform/4.22/html/release_notes/ocp-4-22-release-notes\n\nFor Red Hat OpenShift Logging 6.6, see the following instructions to apply this update:\n\nhttps://docs.redhat.com/en/documentation/red_hat_openshift_logging/6.6 https://access.redhat.com/errata/RHSA-2026:66521\n\nWorkarounds / mitigations:\n\n- To mitigate this issue, avoid processing tar archives from untrusted sources. When handling archives from potentially untrusted origins, ensure that the extraction process is executed with the least privileges necessary to limit the impact of any arbitrary file write attempts.\n\n## Package advisory (CVE-2026-17106)\n\nAffected packages:\n\n- `github.com/moby/go-archive < 0.3.0`\n\nPatched in:\n\n- `github.com/moby/go-archive 0.3.0`\n\nSource: https://github.com/advisories/GHSA-hfg8-hc9c-6c3h","depth":"midnight","depthScore":55,"depthScoreParts":{"impact":42.9,"likelihood":0.1,"exploitation":12,"ransomware":0},"changes":[{"seq":201465,"id":"CVE-2026-17106","ts":1789399479404,"field":"cvss","old":null,"new":"7.8"},{"seq":200199,"id":"CVE-2026-17106","ts":1789396994958,"field":"cvss","old":"7.8","new":null},{"seq":198122,"id":"CVE-2026-17106","ts":1789388002345,"field":"cvss","old":null,"new":"7.8"},{"seq":195916,"id":"CVE-2026-17106","ts":1789383348962,"field":"cvss","old":"7.8","new":null},{"seq":194845,"id":"CVE-2026-17106","ts":1789380282017,"field":"cvss","old":null,"new":"7.8"},{"seq":193632,"id":"CVE-2026-17106","ts":1789378218922,"field":"cvss","old":"7.8","new":null},{"seq":192419,"id":"CVE-2026-17106","ts":1789376202603,"field":"cvss","old":null,"new":"7.8"},{"seq":191206,"id":"CVE-2026-17106","ts":1789373078660,"field":"cvss","old":"7.8","new":null},{"seq":189991,"id":"CVE-2026-17106","ts":1789369104068,"field":"cvss","old":null,"new":"7.8"},{"seq":188778,"id":"CVE-2026-17106","ts":1789368010299,"field":"cvss","old":"7.8","new":null},{"seq":187561,"id":"CVE-2026-17106","ts":1789364972490,"field":"cvss","old":null,"new":"7.8"},{"seq":186348,"id":"CVE-2026-17106","ts":1789362951019,"field":"cvss","old":"7.8","new":null},{"seq":185134,"id":"CVE-2026-17106","ts":1789360947083,"field":"cvss","old":null,"new":"7.8"},{"seq":183921,"id":"CVE-2026-17106","ts":1789357877661,"field":"cvss","old":"7.8","new":null},{"seq":182173,"id":"CVE-2026-17106","ts":1789354070970,"field":"cvss","old":null,"new":"7.8"},{"seq":180966,"id":"CVE-2026-17106","ts":1789352898438,"field":"cvss","old":"7.8","new":null},{"seq":179759,"id":"CVE-2026-17106","ts":1789349968104,"field":"cvss","old":null,"new":"7.8"},{"seq":178552,"id":"CVE-2026-17106","ts":1789347757902,"field":"cvss","old":"7.8","new":null},{"seq":177345,"id":"CVE-2026-17106","ts":1789346152835,"field":"cvss","old":null,"new":"7.8"},{"seq":176138,"id":"CVE-2026-17106","ts":1789342696875,"field":"cvss","old":"7.8","new":null},{"seq":175924,"id":"CVE-2026-17106","ts":1789342307677,"field":"cvss","old":null,"new":"7.8"},{"seq":175462,"id":"CVE-2026-17106","ts":1789338350494,"field":"cvss","old":"7.8","new":null},{"seq":174257,"id":"CVE-2026-17106","ts":1789334572412,"field":"cvss","old":null,"new":"7.8"},{"seq":173052,"id":"CVE-2026-17106","ts":1789333157531,"field":"cvss","old":"7.8","new":null},{"seq":171866,"id":"CVE-2026-17106","ts":1789330859155,"field":"cvss","old":null,"new":"7.8"},{"seq":170680,"id":"CVE-2026-17106","ts":1789328333852,"field":"cvss","old":"7.8","new":null},{"seq":169475,"id":"CVE-2026-17106","ts":1789326871152,"field":"cvss","old":null,"new":"7.8"},{"seq":168270,"id":"CVE-2026-17106","ts":1789323359343,"field":"cvss","old":"7.8","new":null},{"seq":167065,"id":"CVE-2026-17106","ts":1789319348034,"field":"cvss","old":null,"new":"7.8"},{"seq":165860,"id":"CVE-2026-17106","ts":1789318218799,"field":"cvss","old":"7.8","new":null},{"seq":164655,"id":"CVE-2026-17106","ts":1789315515236,"field":"cvss","old":null,"new":"7.8"},{"seq":163450,"id":"CVE-2026-17106","ts":1789313215192,"field":"cvss","old":"7.8","new":null},{"seq":162245,"id":"CVE-2026-17106","ts":1789311694379,"field":"cvss","old":null,"new":"7.8"},{"seq":161040,"id":"CVE-2026-17106","ts":1789308211815,"field":"cvss","old":"7.8","new":null},{"seq":160545,"id":"CVE-2026-17106","ts":1789304142372,"field":"cvss","old":null,"new":"7.8"},{"seq":158383,"id":"CVE-2026-17106","ts":1789299224594,"field":"cvss","old":"7.8","new":null},{"seq":157347,"id":"CVE-2026-17106","ts":1789296443905,"field":"cvss","old":null,"new":"7.8"},{"seq":156142,"id":"CVE-2026-17106","ts":1789294337425,"field":"cvss","old":"7.8","new":null},{"seq":154937,"id":"CVE-2026-17106","ts":1789292615319,"field":"cvss","old":null,"new":"7.8"},{"seq":153732,"id":"CVE-2026-17106","ts":1789289304009,"field":"cvss","old":"7.8","new":null},{"seq":152944,"id":"CVE-2026-17106","ts":1789285205389,"field":"cvss","old":null,"new":"7.8"},{"seq":152188,"id":"CVE-2026-17106","ts":1789280929265,"field":"cvss","old":"7.8","new":null},{"seq":151149,"id":"CVE-2026-17106","ts":1789277398687,"field":"cvss","old":null,"new":"7.8"},{"seq":147878,"id":"CVE-2026-17106","ts":1789270834358,"field":"cvss","old":"7.8","new":null},{"seq":145918,"id":"CVE-2026-17106","ts":1789269157204,"field":"cvss","old":null,"new":"7.8"},{"seq":144822,"id":"CVE-2026-17106","ts":1789266081918,"field":"cvss","old":"7.8","new":null},{"seq":143726,"id":"CVE-2026-17106","ts":1789262423949,"field":"cvss","old":null,"new":"7.8"},{"seq":142562,"id":"CVE-2026-17106","ts":1789261161666,"field":"cvss","old":"7.8","new":null},{"seq":141398,"id":"CVE-2026-17106","ts":1789258593577,"field":"cvss","old":null,"new":"7.8"},{"seq":140200,"id":"CVE-2026-17106","ts":1789256354825,"field":"cvss","old":"7.8","new":null}]}