<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 21:16:36 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-07366</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07366</link>
      <description>bdu:2026-07366</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07366</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0386 — De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Elles permettent à un attaquant de provoqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0386</link>
      <description>certfr-2026-avi-0386</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0386</guid>
    </item>
    <item>
      <title>EUVD-2026-277978</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-277978</link>
      <description>EUVD-2026-277978</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-277978</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33542</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33542</link>
      <description>&lt;p&gt;Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33542</guid>
    </item>
    <item>
      <title>GHSA-p8mm-23gg-jc9r — Incus does not verify combined fingerprint when downloading images from simplestreams servers</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-p8mm-23gg-jc9r</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/lxc/incus/v6/client&lt;/p&gt;
&lt;p&gt;### Summary
A lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one.&lt;/p&gt;
&lt;p&gt;### Details
Incus image fingerprints are computed as the SHA256 of the concatenated image files.
When downloading from a public image server using a simplestreams index, Incus requires an HTTPS connection and validates the SHA256 of the individual files but is lacking validation that the concatenated hash of the files matches the fingerprint listed in the simplestreams index.&lt;/p&gt;
&lt;p&gt;This missing check allows an attacker with access to an Incus environment lacking suitable image source restrictions (`restricted.image.server` or equivalent firewall rules) to cause Incus to download from an attacker controlled image server which would provide different image files for an other well known image fingerprint.&lt;/p&gt;
&lt;p&gt;Such an attack can be used to poison the global image cache, leading to another user on the system wanting to use the legitimate image to be provided the compromised one instead.&lt;/p&gt;
&lt;p&gt;For this to be successful, the attacker requires:&lt;/p&gt;
&lt;p&gt;- Access to an Incus server
 - That server to NOT have been configured with `restricted.image.servers` or an equivalent firewall or HTTP proxy policy
 - Some ability to predict what image may be used by other users in the near future
 - Other users that are actively deploying new Inc…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/lxc/incus/v6/client&lt;/p&gt;
&lt;p&gt;### Summary
A lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one.&lt;/p&gt;
&lt;p&gt;### Details
Incus image fingerprints are computed as the SHA256 of the concatenated image files.
When downloading from a public image server using a simplestreams index, Incus requires an HTTPS connection and validates the SHA256 of the individual files but is lacking validation that the concatenated hash of the files matches the fingerprint listed in the simplestreams index.&lt;/p&gt;
&lt;p&gt;This missing check allows an attacker with access to an Incus environment lacking suitable image source restrictions (`restricted.image.server` or equivalent firewall rules) to cause Incus to download from an attacker controlled image server which would provide different image files for an other well known image fingerprint.&lt;/p&gt;
&lt;p&gt;Such an attack can be used to poison the global image cache, leading to another user on the system wanting to use the legitimate image to be provided the compromised one instead.&lt;/p&gt;
&lt;p&gt;For this to be successful, the attacker requires:&lt;/p&gt;
&lt;p&gt;- Access to an Incus server
 - That server to NOT have been configured with `restricted.image.servers` or an equivalent firewall or HTTP proxy policy
 - Some ability to predict what image may be used by other users in the near future
 - Other users that are actively deploying new Inc…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-p8mm-23gg-jc9r</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-33542 — Incus does not verify combined fingerprint when downloading images from simplestreams servers</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-33542</link>
      <description>msrc_CVE-2026-33542</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-33542</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10450-1 — incus-6.23-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10450-1</link>
      <description>&lt;p&gt;incus-6.23-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;incus-6.23-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10450-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-33542</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-33542</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: lxd, Ubuntu:Pro:18.04:LTS: lxd, Ubuntu:20.04:LTS: lxd, Ubuntu:Pro:24.04:LTS: incus, Ubuntu:25.10: incus, Ubuntu:Pro:26.04:LTS: incus&lt;/p&gt;
&lt;p&gt;Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: lxd, Ubuntu:Pro:18.04:LTS: lxd, Ubuntu:20.04:LTS: lxd, Ubuntu:Pro:24.04:LTS: incus, Ubuntu:25.10: incus, Ubuntu:Pro:26.04:LTS: incus&lt;/p&gt;
&lt;p&gt;Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-33542</guid>
    </item>
  </channel>
</rss>
