<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:16:55.107105+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-07366</id>
    <title>bdu:2026-07366</title>
    <updated>2026-10-03T21:16:55.111885+00:00</updated>
    <content>bdu:2026-07366</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-07366"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0386</id>
    <title>certfr-2026-avi-0386 — De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Elles permettent à un attaquant de provoqu…</title>
    <updated>2026-10-03T21:16:55.111918+00:00</updated>
    <content>certfr-2026-avi-0386</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0386"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-277978</id>
    <title>EUVD-2026-277978</title>
    <updated>2026-10-03T21:16:55.111936+00:00</updated>
    <content>EUVD-2026-277978</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-277978"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33542</id>
    <title>fkie_cve-2026-33542</title>
    <updated>2026-10-03T21:16:55.111948+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33542"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p8mm-23gg-jc9r</id>
    <title>GHSA-p8mm-23gg-jc9r — Incus does not verify combined fingerprint when downloading images from simplestreams servers</title>
    <updated>2026-10-03T21:16:55.111977+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/lxc/incus/v6/client</p>
<p>### Summary
A lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one.</p>
<p>### Details
Incus image fingerprints are computed as the SHA256 of the concatenated image files.
When downloading from a public image server using a simplestreams index, Incus requires an HTTPS connection and validates the SHA256 of the individual files but is lacking validation that the concatenated hash of the files matches the fingerprint listed in the simplestreams index.</p>
<p>This missing check allows an attacker with access to an Incus environment lacking suitable image source restrictions (`restricted.image.server` or equivalent firewall rules) to cause Incus to download from an attacker controlled image server which would provide different image files for an other well known image fingerprint.</p>
<p>Such an attack can be used to poison the global image cache, leading to another user on the system wanting to use the legitimate image to be provided the compromised one instead.</p>
<p>For this to be successful, the attacker requires:</p>
<p>- Access to an Incus server
 - That server to NOT have been configured with `restricted.image.servers` or an equivalent firewall or HTTP proxy policy
 - Some ability to predict what image may be used by other users in the near future
 - Other users that are actively deploying new Inc…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p8mm-23gg-jc9r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-33542</id>
    <title>msrc_CVE-2026-33542 — Incus does not verify combined fingerprint when downloading images from simplestreams servers</title>
    <updated>2026-10-03T21:16:55.112057+00:00</updated>
    <content>msrc_CVE-2026-33542</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-33542"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10450-1</id>
    <title>openSUSE-SU-2026:10450-1 — incus-6.23-1.1 on GA media</title>
    <updated>2026-10-03T21:16:55.112074+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>incus-6.23-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10450-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-33542</id>
    <title>UBUNTU-CVE-2026-33542</title>
    <updated>2026-10-03T21:16:55.112090+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: lxd, Ubuntu:Pro:18.04:LTS: lxd, Ubuntu:20.04:LTS: lxd, Ubuntu:Pro:24.04:LTS: incus, Ubuntu:25.10: incus, Ubuntu:Pro:26.04:LTS: incus</p>
<p>Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-33542"/>
  </entry>
</feed>
