Path traversal vulnerability in Docker before 1.3.3 allows remote attackers to write to arbitrary files and bypass a container protection mechanism via a full pathname in a symlink in an (1) image or (2) build in a Dockerfile.
https://github.com/advisories/GHSA-vj3f-3286-r4pf
https://euvd.enisa.europa.eu/vulnerability/EUVD-2021-1205
https://bugzilla.redhat.com/show_bug.cgi?id=1172761
http://www.securityfocus.com/archive/1/archive/1/534215/100/0/threaded