Hi, I have not seen that issue before. I cannot reproduce.
Does it work with other Docker images such as docker://busybox? What is your default umask when running things with sudo? What is the filesystem used for /var/lib/rkt (ext4, btfs...)? -- Alban