<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 16:23:32 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-15349</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-15349</link>
      <description>bdu:2026-15349</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-15349</guid>
    </item>
    <item>
      <title>EUVD-2026-330383</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-330383</link>
      <description>EUVD-2026-330383</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-330383</guid>
    </item>
    <item>
      <title>fkie_cve-2026-54448</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54448</link>
      <description>&lt;p&gt;Trivy is a security scanner. Prior to 0.71.0, when Trivy scans a Helm chart archive (.tgz), its custom tar unpacker reads each entry with io.ReadAll(tr) and no size limit. An attacker who can place a malicious .tgz file in the scanned path can craft a small compressed archive that decompresses to gigabytes, causing the Trivy process to be killed by the OS OOM killer. This vulnerability is fixed in 0.71.0.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Trivy is a security scanner. Prior to 0.71.0, when Trivy scans a Helm chart archive (.tgz), its custom tar unpacker reads each entry with io.ReadAll(tr) and no size limit. An attacker who can place a malicious .tgz file in the scanned path can craft a small compressed archive that decompresses to gigabytes, causing the Trivy process to be killed by the OS OOM killer. This vulnerability is fixed in 0.71.0.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-54448</guid>
    </item>
    <item>
      <title>GHSA-q3fv-x8vg-qqm4 — Trivy: Helm chart tar bomb causes OOM via unbounded io.ReadAll in parser</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q3fv-x8vg-qqm4</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/aquasecurity/trivy&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;When Trivy scans a Helm chart archive (`.tgz`), its custom tar unpacker reads each entry with `io.ReadAll(tr)` and no size limit. An attacker who can place a malicious `.tgz` file in the scanned path can craft a small compressed archive that decompresses to gigabytes, causing the Trivy process to be killed by the OS OOM killer.&lt;/p&gt;
&lt;p&gt;## Affected configurations&lt;/p&gt;
&lt;p&gt;Exploitation requires the attacker to place a crafted `.tgz` file in a location that Trivy will scan as a Helm chart. This applies to the following scan targets:&lt;/p&gt;
&lt;p&gt;| Command | Condition |
| --- | --- |
| `trivy config &amp;lt;dir&amp;gt;` | Directory contains a crafted `.tgz` Helm chart (misconfiguration scanning is always enabled) |
| `trivy filesystem --scanners misconf &amp;lt;dir&amp;gt;` | Directory contains a crafted `.tgz` Helm chart **and** `--scanners misconf` is explicitly enabled |
| `trivy image --scanners misconf &amp;lt;image&amp;gt;` | Image contains a crafted `.tgz` Helm chart **and** `--scanners misconf` is explicitly enabled |&lt;/p&gt;
&lt;p&gt;Realistic scenarios include:
- A CI pipeline that runs `trivy config .` on a repository where a contributor can submit a pull request containing a crafted chart archive.
- A pipeline that scans a container image with `--scanners misconf`, whose build context includes untrusted `.tgz` files.&lt;/p&gt;
&lt;p&gt;## Impact&lt;/p&gt;
&lt;p&gt;An attacker who satisfies the conditions above can exhaust all available memory on the host running Trivy. The OS OOM killer will terminate the Trivy process and may affect other processes sharing the same host or…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/aquasecurity/trivy&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;When Trivy scans a Helm chart archive (`.tgz`), its custom tar unpacker reads each entry with `io.ReadAll(tr)` and no size limit. An attacker who can place a malicious `.tgz` file in the scanned path can craft a small compressed archive that decompresses to gigabytes, causing the Trivy process to be killed by the OS OOM killer.&lt;/p&gt;
&lt;p&gt;## Affected configurations&lt;/p&gt;
&lt;p&gt;Exploitation requires the attacker to place a crafted `.tgz` file in a location that Trivy will scan as a Helm chart. This applies to the following scan targets:&lt;/p&gt;
&lt;p&gt;| Command | Condition |
| --- | --- |
| `trivy config &amp;lt;dir&amp;gt;` | Directory contains a crafted `.tgz` Helm chart (misconfiguration scanning is always enabled) |
| `trivy filesystem --scanners misconf &amp;lt;dir&amp;gt;` | Directory contains a crafted `.tgz` Helm chart **and** `--scanners misconf` is explicitly enabled |
| `trivy image --scanners misconf &amp;lt;image&amp;gt;` | Image contains a crafted `.tgz` Helm chart **and** `--scanners misconf` is explicitly enabled |&lt;/p&gt;
&lt;p&gt;Realistic scenarios include:
- A CI pipeline that runs `trivy config .` on a repository where a contributor can submit a pull request containing a crafted chart archive.
- A pipeline that scans a container image with `--scanners misconf`, whose build context includes untrusted `.tgz` files.&lt;/p&gt;
&lt;p&gt;## Impact&lt;/p&gt;
&lt;p&gt;An attacker who satisfies the conditions above can exhaust all available memory on the host running Trivy. The OS OOM killer will terminate the Trivy process and may affect other processes sharing the same host or…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q3fv-x8vg-qqm4</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11162-1 — trivy-0.71.2-2.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11162-1</link>
      <description>&lt;p&gt;trivy-0.71.2-2.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;trivy-0.71.2-2.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11162-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2082 — Aqua Security Trivy: Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2082</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Aqua Security Trivy ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Aqua Security Trivy ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2082</guid>
    </item>
  </channel>
</rss>
