LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-64773

apple · container

Published
CVSS7.5
Severityhigh
WeaknessCWE-770
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

An attacker that can reach a container's published TCP port may be able to force the host's forwarding process to buffer an unbounded amount of that client's data in memory, for as long as the backend container connection takes to complete — with no cap on how much accumulates or how long the wait can be stretched. This vulnerability is addressed in container version 1.2.0.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-64773

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-64773.