<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 19:14:39 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-14836</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-14836</link>
      <description>bdu:2026-14836</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-14836</guid>
    </item>
    <item>
      <title>EUVD-2026-369802</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-369802</link>
      <description>EUVD-2026-369802</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-369802</guid>
    </item>
    <item>
      <title>fkie_cve-2026-85731</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-85731</link>
      <description>&lt;p&gt;oras-go is a Go library for managing OCI artifacts. Prior to 2.6.2, content/file.Store extraction of OCI layers marked with io.deis.oras.content.unpack=true can write outside the store working directory. The pushDir path through extractTarDirectory and ensureLinkPath validates symlink targets lexically, resolveRelToBase skips its parent-symlink walk for root-level entries, and writeFile follows a terminal symlink when opening a regular file. A malicious archive can therefore create a symlink chain whose lexical target remains inside the extraction root but whose resolved target is an attacker-selected absolute path, then overwrite that target with a same-named regular-file entry even when AllowPathTraversalOnWrite is false. Pulling an attacker-controlled artifact can create or overwrite any file writable by the process and may lead to code execution. This issue is fixed in version 2.6.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;oras-go is a Go library for managing OCI artifacts. Prior to 2.6.2, content/file.Store extraction of OCI layers marked with io.deis.oras.content.unpack=true can write outside the store working directory. The pushDir path through extractTarDirectory and ensureLinkPath validates symlink targets lexically, resolveRelToBase skips its parent-symlink walk for root-level entries, and writeFile follows a terminal symlink when opening a regular file. A malicious archive can therefore create a symlink chain whose lexical target remains inside the extraction root but whose resolved target is an attacker-selected absolute path, then overwrite that target with a same-named regular-file entry even when AllowPathTraversalOnWrite is false. Pulling an attacker-controlled artifact can create or overwrite any file writable by the process and may lead to code execution. This issue is fixed in version 2.6.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-85731</guid>
    </item>
    <item>
      <title>GHSA-m37j-52j7-pjw7 — oras-go: Arbitrary file write outside file.Store root via symlink-chain bypass in tar extraction (pushDir)</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m37j-52j7-pjw7</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: oras.land/oras-go/v2&lt;/p&gt;
&lt;p&gt;### Summary
The `content/file.Store` in oras-go v2 unpacks OCI layer tarballs when a descriptor carries `io.deis.oras.content.unpack=true`. The extraction routine validates symlink targets purely lexically (`filepath.Join`) and, for regular files placed directly at the extraction root, skips the parent-symlink `Lstat` walk. A malicious tarball can plant a chain of symlinks whose lexical target stays inside the extraction root but whose kernel-resolved target is any absolute path, then write through it with a follow-up regular-file entry. The result is arbitrary file create/overwrite outside the store&amp;#39;s working directory under the default `AllowPathTraversalOnWrite=false` configuration — a canonical tar-slip → RCE primitive.&lt;/p&gt;
&lt;p&gt;### Details
**Affected versions:** `&amp;lt;= v2.6.1`&lt;/p&gt;
&lt;p&gt;**Entry point:** `content/file/file.go` line 486, `(*Store).pushDir` — reached from `(*Store).Push` for any descriptor whose annotations include `io.deis.oras.content.unpack: &amp;#34;true&amp;#34;` (i.e. `file.AnnotationUnpack`) and an `org.opencontainers.image.title`. `oras.Copy` from a remote registry into a `file.New(dir)` store invokes this per layer.&lt;/p&gt;
&lt;p&gt;**Root cause 1 — lexical link validation.** `content/file/utils.go` lines 264–275, `ensureLinkPath`:&lt;/p&gt;
&lt;p&gt;```go
func ensureLinkPath(baseAbs, baseRel, link, target string) (string, error) {
        // resolve link
        path := target
        if !filepath.IsAbs(target) {
                path = filepath.Join(filepath.Dir(link), target)
        }
        // ensure path is un…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: oras.land/oras-go/v2&lt;/p&gt;
&lt;p&gt;### Summary
The `content/file.Store` in oras-go v2 unpacks OCI layer tarballs when a descriptor carries `io.deis.oras.content.unpack=true`. The extraction routine validates symlink targets purely lexically (`filepath.Join`) and, for regular files placed directly at the extraction root, skips the parent-symlink `Lstat` walk. A malicious tarball can plant a chain of symlinks whose lexical target stays inside the extraction root but whose kernel-resolved target is any absolute path, then write through it with a follow-up regular-file entry. The result is arbitrary file create/overwrite outside the store&amp;#39;s working directory under the default `AllowPathTraversalOnWrite=false` configuration — a canonical tar-slip → RCE primitive.&lt;/p&gt;
&lt;p&gt;### Details
**Affected versions:** `&amp;lt;= v2.6.1`&lt;/p&gt;
&lt;p&gt;**Entry point:** `content/file/file.go` line 486, `(*Store).pushDir` — reached from `(*Store).Push` for any descriptor whose annotations include `io.deis.oras.content.unpack: &amp;#34;true&amp;#34;` (i.e. `file.AnnotationUnpack`) and an `org.opencontainers.image.title`. `oras.Copy` from a remote registry into a `file.New(dir)` store invokes this per layer.&lt;/p&gt;
&lt;p&gt;**Root cause 1 — lexical link validation.** `content/file/utils.go` lines 264–275, `ensureLinkPath`:&lt;/p&gt;
&lt;p&gt;```go
func ensureLinkPath(baseAbs, baseRel, link, target string) (string, error) {
        // resolve link
        path := target
        if !filepath.IsAbs(target) {
                path = filepath.Join(filepath.Dir(link), target)
        }
        // ensure path is un…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m37j-52j7-pjw7</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11832-1 — helm3-3.22.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11832-1</link>
      <description>&lt;p&gt;helm3-3.22.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;helm3-3.22.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11832-1</guid>
    </item>
  </channel>
</rss>
