Linuxcontainers
Linuxcontainers Incus: vulnerabilidades y CVE
Linuxcontainers Incus tiene 38 vulnerabilidades publicadas, 36 de ellas en los últimos 12 meses. 14 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE38
Últimos 12 meses36
Críticas14
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-63343 | Crítica (9.9) | 0.48% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, a malicious image containing a `metadata.yaml` symlink pointing to an arbitrary host path allows an authenticated Incus user to read or… |
| CVE-2026-63125 | Crítica (9.9) | 0.66% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, an unprivileged, project-confined Incus user (a non-admin TLS/RBAC identity with `can_create_images` and `can_create_instances`) can… |
| CVE-2026-62941 | Crítica (9.9) | 0.44% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the project restriction check (`AllowInstanceCreation`) runs BEFORE the source instance's… |
| CVE-2026-62940 | Crítica (9.9) | 0.42% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster member, user-supplied configuration overrides (including security-critical keys like… |
| CVE-2026-62867 | Crítica (9.9) | 0.52% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, improper validation of user-provided `block.create_options` in storage volume configuration leads to argument injection in the constructed… |
| CVE-2026-62313 | Media (4.3) | 0.36% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.3.0, project-level enforcement of `restricted.containers.privilege=isolated` can be trivially bypassed, allowing a user to create a… |
| CVE-2026-55622 | Alta (7.7) | 0.34% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for instance copying where an attacker knowing the name of a project that they don't have access to and… |
| CVE-2026-55621 | Alta (7.7) | 0.34% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing the name of a project that they don't have access… |
| CVE-2026-48769 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, an arbitrary file write exists in the Incus client when a malicious image server returns a crafted `Incus-Image-Hash` header. This can… |
| CVE-2026-48756 | Baja (2.1) | 0.38% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.1.0, `(*backend).CreateCustomVolumeFromBackup` in `internal/server/storage/backend.go` contains an unguarded `*time.Time` dereference on the… |
| CVE-2026-48755 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.1.0, improper validation of user-provided backup compression algorithm leads to argument injection in the constructed command line. This leads… |
| CVE-2026-48754 | Baja (2.1) | 0.38% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.1.0, `(*backend).createDependentVolumesFromBackup` in `internal/server/storage/backend.go` contains a cluster of unguarded pointer derefs on… |
| CVE-2026-48753 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.1.0, the S3 protocol upload endpoint is vulnerable to path traversal and allows creation of arbitrary files on the host. This behavior could… |
| CVE-2026-48752 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, a specially crafted image or instance backup can be used to read or create/write arbitrary files on the host; possibly leading to… |
| CVE-2026-48751 | Crítica (9.9) | 0.64% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, instance snapshots ignore the `restricted.containers.lowlevel=block` setting; allowing for arbitrary command execution on the Incus server… |
| CVE-2026-48750 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, the `record-output` parameter of the `/instances/$name/exec` endpoint stores the output of the command in the `exec-output` directory of… |
| CVE-2026-48749 | Crítica (9.9) | 0.73% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.2.0, a specially crafted image can be used to read or create/write arbitrary files on the host; possibly leading to arbitrary command… |
| CVE-2026-47753 | Media (4.4) | 0.15% | — | 21 ago 2026 | Incus is a system container and virtual machine manager. Prior to version 7.1.0, `(*backend).CreateInstanceFromBackup` in `internal/server/storage/backend.go` contains a nil-pointer dereference that an authenticated… |
| CVE-2026-41685 | Media (4.3) | 0.39% | — | 7 may 2026 | Incus is a system container and virtual machine manager. Prior to version 7.0.0, uploads of large amount of data by authenticated users can run the Incus server out of disk space, potentially taking down the host… |
| CVE-2026-41684 | Media (6.5) | 0.47% | — | 7 may 2026 | Incus is a system container and virtual machine manager. Prior to version 7.0.0, backup.GetInfo() trusts the inline backup/index.yaml config when present and only falls back to parsing the legacy… |
| CVE-2026-41648 | Media (5.3) | 0.39% | — | 7 may 2026 | Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for… |
| CVE-2026-41647 | Media (6.5) | 0.47% | — | 7 may 2026 | Incus is a system container and virtual machine manager. Prior to version 7.0.0, a missing error handling could lead an authenticated Incus user to cause a daemon crash through the import of a truncated storage bucket… |
| CVE-2026-40251 | Alta (7.1) | 0.47% | — | 6 may 2026 | Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage volume feature to… |
| CVE-2026-40243 | Baja (2.3) | 0.22% | — | 6 may 2026 | Incus is a system container and virtual machine manager. In versions before 7.0.0, broken TLS validation logic in the OVN database connection logic can allow connections to an attacker's OVN database. The OVN client… |
| CVE-2026-40197 | Alta (7.1) | 0.44% | — | 6 may 2026 | Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage volume feature to… |
| CVE-2026-40195 | Alta (7.1) | 0.44% | — | 6 may 2026 | Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage bucket import logic allows an authenticated user with access to the storage bucket feature to… |
| CVE-2026-35527 | Media (5.3) | 0.29% | — | 5 may 2026 | Incus is an open source container and virtual machine manager. In versions prior to 7.0.0, the image import flow issues an outbound HEAD request to a user-supplied URL before validating the request against project… |
| CVE-2026-33945 | Crítica (9.6) | 0.53% | — | 27 mar 2026 | Incus is a system container and virtual machine manager. Incus instances have an option to provide credentials to systemd in the guest. For containers, this is handled through a shared directory. Prior to version… |
| CVE-2026-33898 | Alta (8.8) | 0.48% | — | 27 mar 2026 | Incus is a system container and virtual machine manager. Prior to version 6.23.0, the web server spawned by `incus webui` incorrectly validates the authentication token such that an invalid value will be accepted.… |
| CVE-2026-33897 | Crítica (9.9) | 0.53% | — | 26 mar 2026 | Incus is a system container and virtual machine manager. Prior to version 6.23.0, instance template files can be used to cause arbitrary read or writes as root on the host server. Incus allows for pongo2 templates… |