Container Toolkit: Unauthorized empty-file creation on the host
CVSS 4.1CVE-2024-0133NVIDIA / GPU stackcurated
Impact
Unauthorized empty-file creation on the host
Who can reach it
Any tenant with a crafted container image
What to do
Bump toolkit + restart runtime
Fleet impact
How widespread
Universal - same package, same install base
Cost to remediate
daemon-restart (1.16.2)
Why it hits the whole fleet
Sibling TOCTOU allowing creation of arbitrary files on the host from inside a container; low severity alone but a stepping stone to host compromise on shared nodes
References
Related entries
- Container Toolkit: Container escape to host filesystem via TOCTOU in the **default** configurationCVE-2024-0132 · Container ToolkitCritical
- Container Toolkit: Container escape to host root via malicious image (LD_PRELOAD in OCI hook)CVE-2025-23266 · Container ToolkitCritical
- Container Toolkit: Container escape / host file write via symlink followingCVE-2025-23267 · Container ToolkitHigh
- Container Toolkit: Container escape to host root via TOCTOU raceCVE-2026-24260 · Container ToolkitHigh
- Container Toolkit: Container escape to host filesystem (bypass of the CVE-2024-0132 fix)CVE-2025-23359 · Container ToolkitHigh
- Container Toolkit / GPU Operator: Unauthorized file creation on the host (data tampering)CVE-2024-0134 · Container Toolkit / GPU OperatorMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.