Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-41988

Опубликовано: 23 апр. 2026
Источник: redhat
CVSS3: 2.8
EPSS Низкий

Описание

uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6. In particular, UUID version 4, which is very commonly used, is unaffected by this issue.

A flaw was found in uuid. When external output buffers are used with UUID versions 3, 5, or 6, an attacker with local access may be able to cause unexpected data writes. This vulnerability could lead to low impact data integrity issues. UUID version 4 is not affected.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Confidential Cluster Operatorconfidential-clusters-beta/attestation-key-register-rhel9Fix deferred
Confidential Cluster Operatorconfidential-clusters-beta/buildroot-rhel9Fix deferred
Confidential Cluster Operatorconfidential-clusters-beta/compute-pcrs-rhel9Fix deferred
Confidential Cluster Operatorconfidential-clusters-beta/confidential-cluster-operator-bundleFix deferred
Confidential Cluster Operatorconfidential-clusters-beta/confidential-cluster-rhel9-operatorFix deferred
Confidential Cluster Operatorconfidential-clusters-beta/registration-server-rhel9Fix deferred
Confidential Compute Attestationbuild-of-trustee/trustee-rhel9Fix deferred
Confidential Compute Attestationopenshift-sandboxed-containers/osc-monitor-rhel9Fix deferred
Confidential Compute Attestationopenshift-sandboxed-containers/osc-operator-bundleFix deferred
Confidential Compute Attestationopenshift-sandboxed-containers/osc-pccsFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2461065uuid: uuid: Unexpected data writes when using external output buffers with specific UUID versions

EPSS

Процентиль: 8%
0.00181
Низкий

2.8 Low

CVSS3

Связанные уязвимости

CVSS3: 3.2
ubuntu
4 месяца назад

uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6. In particular, UUID version 4, which is very commonly used, is unaffected by this issue.

CVSS3: 3.2
nvd
4 месяца назад

uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6. In particular, UUID version 4, which is very commonly used, is unaffected by this issue.

msrc
3 месяца назад

Описание отсутствует

CVSS3: 3.2
debian
4 месяца назад

uuid before 14.0.0 can make unexpected writes when external output buf ...

EPSS

Процентиль: 8%
0.00181
Низкий

2.8 Low

CVSS3