CVE-2026-93323
moby BuildKit
Published 5 Oct 2026 · updated 5 Oct 2026 · Received
6.8 Medium · CVSS 4.0, docker.com
Description
The Dockerfile frontend loaded the Dockerfile and .dockerignore files of a build context into memory without a size limit. A build context containing an oversized file could make buildkitd allocate memory proportional to that file, potentially exhausting memory and terminating the daemon, which interrupts other builds on the same instance. Fixed by rejecting such files above 16 MiB.