Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-41648

3 месяца назад

Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for an authenticated user to provide a crafted image or backup tarball that when parsed by Incus would lead to a very large YAML document being loaded into memory, potentially causing the entire server to run out of memory. This issue has been patched in version 7.0.0.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2026-41648

3 месяца назад

Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for an authenticated user to provide a crafted image or backup tarball that when parsed by Incus would lead to a very large YAML document being loaded into memory, potentially causing the entire server to run out of memory. This issue has been patched in version 7.0.0.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2026-41648

3 месяца назад

Incus is a system container and virtual machine manager. Prior to vers ...

CVSS3: 5
EPSS: Низкий
redos логотип

ROS-20260622-73-0048

около 1 месяца назад

Уязвимость incus

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-67wx-r9xr-x75x

3 месяца назад

Incus has Unbounded YAML Metadata Decode via Parsing

CVSS3: 5
EPSS: Низкий
fstec логотип

BDU:2026-09656

3 месяца назад

Уязвимость функций getImageMetadata() и backup.GetInfo() системы управления контейнерами и менеджера виртуальных машин Incus, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-41648

Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for an authenticated user to provide a crafted image or backup tarball that when parsed by Incus would lead to a very large YAML document being loaded into memory, potentially causing the entire server to run out of memory. This issue has been patched in version 7.0.0.

CVSS3: 5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-41648

Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for an authenticated user to provide a crafted image or backup tarball that when parsed by Incus would lead to a very large YAML document being loaded into memory, potentially causing the entire server to run out of memory. This issue has been patched in version 7.0.0.

CVSS3: 5
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-41648

Incus is a system container and virtual machine manager. Prior to vers ...

CVSS3: 5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260622-73-0048

Уязвимость incus

CVSS3: 4.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-67wx-r9xr-x75x

Incus has Unbounded YAML Metadata Decode via Parsing

CVSS3: 5
0%
Низкий
3 месяца назад
fstec логотип
BDU:2026-09656

Уязвимость функций getImageMetadata() и backup.GetInfo() системы управления контейнерами и менеджера виртуальных машин Incus, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.3
0%
Низкий
3 месяца назад

Уязвимостей на страницу