Security Flaw in Docker Model Runner Fixed on macOS (heise.de)
0xBASE INTEL BRIEF
- Sandbox escape vulnerability in Docker Model Runner (CVE-2026-5843, high severity).
- Malicious AI models can execute code on the host via MLX framework.
- Update to Docker Desktop 4.71.0 or later is recommended.
"A high-severity vulnerability in Docker Model Runner allows sandbox escape on macOS. Attackers can execute arbitrary code via malicious AI models. The issue is fixed in Docker Desktop 4.71.0."
no comments yet.