Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

ubuntu логотип

CVE-2026-19730

около 2 месяцев назад

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - incl...

CVSS3: 4.2
EPSS: Низкий
redhat логотип

CVE-2026-19730

около 2 месяцев назад

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - incl...

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2026-19730

около 2 месяцев назад

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - includ

CVSS3: 4.2
EPSS: Низкий
debian логотип

CVE-2026-19730

около 2 месяцев назад

The 'podman quadlet install --replace' command opens the existing dest ...

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-fx76-2j3w-2mx6

7 дней назад

podman quadlet install --replace does not fully replace the old file

CVSS3: 4.2
EPSS: Низкий
rocky логотип

RLSA-2026:69961

8 дней назад

Important: podman security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-69961

9 дней назад

ELSA-2026-69961: podman security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:70201

8 дней назад

Important: podman security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-70201

9 дней назад

ELSA-2026-70201: podman security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-19730

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - incl...

CVSS3: 4.2
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-19730

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - incl...

CVSS3: 4.2
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-19730

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS configurations), the fallback in ReflinkOrCopy uses io.Copy which performs a non-truncating write. If the original Quadlet is larger than the new Quadlet, the file is not truncated and content from the original is preserved. The command completes with no warning. There is no risk of information leakage as the user already had access to the Quadlet in order to replace it, and in most cases, this would only lead to invalid Quadlet files. However, security-related options from the end of the old Quadlet could be included in the new Quadlet, and if the truncation resulted in a valid Quadlet file, this could result in undesirable behavior. For example, running podman quadlet install --replace to remove a single line from the end of a Quadlet - includ

CVSS3: 4.2
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-19730

The 'podman quadlet install --replace' command opens the existing dest ...

CVSS3: 4.2
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-fx76-2j3w-2mx6

podman quadlet install --replace does not fully replace the old file

CVSS3: 4.2
0%
Низкий
7 дней назад
rocky логотип
RLSA-2026:69961

Important: podman security update

8 дней назад
oracle-oval логотип
ELSA-2026-69961

ELSA-2026-69961: podman security update (IMPORTANT)

9 дней назад
rocky логотип
RLSA-2026:70201

Important: podman security update

8 дней назад
oracle-oval логотип
ELSA-2026-70201

ELSA-2026-70201: podman security update (IMPORTANT)

9 дней назад

Уязвимостей на страницу