Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-10722

Опубликовано: 03 июн. 2026
Источник: nvd
CVSS3: 3.3
CVSS3: 5.5
CVSS2: 1.7
EPSS Низкий

Описание

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch is 533dfc82fd228bfadf42ea7180c39de7d9af47fa. A patch should be applied to remediate this issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cilium:ebpf:*:*:*:*:*:go:*:*
Версия до 0.21.0 (включая)

EPSS

Процентиль: 8%
0.00179
Низкий

3.3 Low

CVSS3

5.5 Medium

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-189

Связанные уязвимости

CVSS3: 3.3
ubuntu
2 месяца назад

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch is 533dfc82fd228bfadf42ea7180c39de7d9af47fa. A patch should be applied to remediate this issue.

CVSS3: 5.5
redhat
2 месяца назад

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch is 533dfc82fd228bfadf42ea7180c39de7d9af47fa. A patch should be applied to remediate this issue.

msrc
2 месяца назад

cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow

CVSS3: 3.3
debian
2 месяца назад

A vulnerability has been found in cilium ebpf up to 0.21.0. This affec ...

suse-cvrf
21 день назад

Security update for alloy

EPSS

Процентиль: 8%
0.00179
Низкий

3.3 Low

CVSS3

5.5 Medium

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-189