Container Security
The latest Container Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2026-63978: Linux kernel gets critical 9.8 patch—WSL, Hyper-V users must update
{ "title": "CVE-2026-63978: Linux kernel gets critical 9.8 patch—WSL, Hyper-V users must update", "content": "A newly published Linux kernel vulnerability (CVE-2026-63978) has landed with a...
CVE-2026-64078: The 7.8-Rated Linux Kernel Bug That WSL 2 Users Must Patch Now
A newly disclosed Linux kernel vulnerability tracked as CVE-2026-64078 carries a 7.8 CVSS severity rating and demands immediate attention from Windows users who rely on WSL 2, Linux containers, or...
Encforge Ransomware Encrypts AI Models and Datasets—Here’s How to Protect Your ML Pipeline
The threat actor behind the first fully autonomous ransomware operation has resurfaced with a new weapon that locks up model weights, training datasets, embedding indexes, and other machine-learning...
Azure AI Document Intelligence Containers Get a Shorter Deadline: What You Must Do Before August 2026
Microsoft has quietly set a hard deadline for organizations running Azure AI Document Intelligence v2.1 containers: August 31, 2026. The twist? The v2.1 cloud REST API gets a stay of execution until...
CVE-2026-47303: Why Windows Update Won't Fix Your ASP.NET Core Apps
On July 14, 2026, Microsoft dropped a security advisory for CVE-2026-47303, an elevation-of-privilege flaw in ASP.NET Core. But don’t expect Windows Update to handle this one. If you’re running...
Critical Linux Kernel Bug Exposes WSL2 and Container Hosts — Patch Now
A newly disclosed Linux kernel vulnerability, tracked as CVE-2026-43499 and named GhostLock, lets attackers break out of sandboxes and seize root control of affected systems. The flaw reaches beyond...
Rocky Linux 10.2 Ships May 29 with Kernel 6.12 and Post-Quantum Crypto
Rocky Linux 10.2 officially hit general availability on May 29, 2026, marking the project's latest milestone as a community-driven rebuild of Red Hat Enterprise Linux. The release tracks RHEL 10.2...
Patch CVE-2026-40226 systemd-nspawn Escape on WSL, Linux, and Azure
Microsoft’s Security Response Center (MSRC) has acknowledged a high-severity container escape vulnerability—CVE-2026-40226—in systemd’s lightweight container manager, systemd-nspawn....
Incus Image Cache Poisoning Bug Fixed in Version 6.23.0
Incus versions prior to 6.23.0 contain a medium-severity vulnerability tracked as CVE-2026-33542, disclosed in late March 2026. The flaw stems from a missing combined fingerprint verification when...
Microsoft Patches Critical .NET 10 Linux Privilege Escalation Vulnerability CVE-2026-26131
Microsoft released a security patch on March 10, 2026 addressing CVE-2026-26131, a critical elevation-of-privilege vulnerability in .NET 10 for Linux systems. The flaw stems from incorrect default...
Critical NVIDIA Container Toolkit Vulnerability (CVE-2025-23266) Exposes Host Systems to Attack
A critical security vulnerability in NVIDIA's Container Toolkit has been discovered that could allow attackers to execute arbitrary code with elevated privileges on host systems, creating a realistic...
Hidden Flaw in Podman and Docker Could Let Attackers Gain Extra Privileges—What to Do
In a quiet disclosure that every container operator needs to understand, maintainers of Podman and the open-source Moby project (the engine behind Docker) revealed a subtle but dangerous...