Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

github логотип

GHSA-p8mm-23gg-jc9r

4 месяца назад

Incus does not verify combined fingerprint when downloading images from simplestreams servers

EPSS: Низкий
ubuntu логотип

CVE-2026-33542

4 месяца назад

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2026-33542

4 месяца назад

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 8.5
EPSS: Низкий
nvd логотип

CVE-2026-33542

4 месяца назад

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2026-33542

4 месяца назад

Incus does not verify combined fingerprint when downloading images from simplestreams servers

EPSS: Низкий
debian логотип

CVE-2026-33542

4 месяца назад

Incus is a system container and virtual machine manager. Prior to vers ...

CVSS3: 4.8
EPSS: Низкий
fstec логотип

BDU:2026-07366

4 месяца назад

Уязвимость системы управления контейнерами и менеджера виртуальных машин Incus, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю оказать воздействие на конфиденциальность и целостность защищаемой информации

CVSS3: 4.8
EPSS: Низкий
redos логотип

ROS-20260420-73-0042

4 месяца назад

Уязвимость incus

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-p8mm-23gg-jc9r

Incus does not verify combined fingerprint when downloading images from simplestreams servers

0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-33542

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 4.8
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-33542

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 8.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-33542

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.

CVSS3: 4.8
0%
Низкий
4 месяца назад
msrc логотип
CVE-2026-33542

Incus does not verify combined fingerprint when downloading images from simplestreams servers

0%
Низкий
4 месяца назад
debian логотип
CVE-2026-33542

Incus is a system container and virtual machine manager. Prior to vers ...

CVSS3: 4.8
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-07366

Уязвимость системы управления контейнерами и менеджера виртуальных машин Incus, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю оказать воздействие на конфиденциальность и целостность защищаемой информации

CVSS3: 4.8
0%
Низкий
4 месяца назад
redos логотип
ROS-20260420-73-0042

Уязвимость incus

CVSS3: 7.1
0%
Низкий
4 месяца назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.