Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-76235

Опубликовано: 19 авг. 2026
Источник: debian
EPSS Низкий

Описание

A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cockpitfixed366-1package

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2519497

  • https://github.com/cockpit-project/cockpit/pull/23633

  • Fixed by: https://github.com/cockpit-project/cockpit/commit/233b1c178dcb95ccef356832afd9d60023d601e9

EPSS

Процентиль: 28%
0.00355
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
8 дней назад

(A memory leak flaw was found in cockpit-ws. The login page handler lea ...)

CVSS3: 7.5
redhat
9 дней назад

A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.

CVSS3: 7.5
nvd
8 дней назад

A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.

CVSS3: 7.5
github
8 дней назад

A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.

EPSS

Процентиль: 28%
0.00355
Низкий