linuxcontainers kayıtları
linuxcontainers üreticisine ait 32 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %3,1
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %96,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-476 NULL Pointer Dereference4
- CWE-770 Allocation of Resources Without Limits or Throttling3
- CWE-264 Permissions, Privileges, and Access Controls3
- CWE-59 Improper Link Resolution Before File Access ('Link Following')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-287 Improper Authentication2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
32 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
64Bu hafta | CVE-2019-5736Silahlaştırılmış | runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequendocker · docker · CWE-78 | Yüksek8,6 | — | %98,5 | 11 Şub 2019 |
39İzleyin | CVE-2026-33897İstismar yok | Incus vulnerable to arbitrary file read and write through pongo templateslinuxcontainers · incus · CWE-1336 | Kritik9,9 | — | %0,5 | 26 Mar 2026 |
38İzleyin | CVE-2026-33945İstismar yok | Abitrary file write through systemd-creds optionlinuxcontainers · incus · CWE-22 | Kritik9,6 | — | %0,5 | 26 Mar 2026 |
37İzleyin | CVE-2016-8649İstismar yok | lxc-attach in LXC before 1.0.9 and 2.x before 2.0.6 allows an attacker inside of an unprivileged container to use an inherited file descriptlinuxcontainers · lxc · CWE-264 | Kritik9,1 | — | %2,8 | 1 May 2017 |
35İzleyin | CVE-2026-33898İstismar yok | Local Incus UI web server vulnerable to nuthentication bypasslinuxcontainers · incus · CWE-287 | Yüksek8,8 | — | %0,5 | 26 Mar 2026 |
34İzleyin | CVE-2016-10124İstismar yok | An issue was discovered in Linux Containers (LXC) before 2016-02-22.linuxcontainers · lxc · CWE-284 | Yüksek8,6 | — | %1,5 | 9 Oca 2017 |
34İzleyin | CVE-2026-23954İstismar yok | Incus container image templating arbitrary host file read and writelinuxcontainers · incus · CWE-22 | Yüksek8,7 | — | %0,8 | 22 Oca 2026 |
34İzleyin | CVE-2026-23953İstismar yok | Incus container environment configuration newline injectionlinuxcontainers · incus · CWE-93 | Yüksek8,7 | — | %0,5 | 22 Oca 2026 |
34İzleyin | CVE-2025-64507İstismar yok | Incus vulnerable to local privilege escalation through custom storage volumeslinuxcontainers · incus · CWE-269 | Yüksek8,6 | — | %0,2 | 10 Kas 2025 |
32İzleyin | CVE-2017-18641İstismar yok | In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap contlinuxcontainers · lxc · CWE-287 | Yüksek8,1 | — | %1,4 | 9 Şub 2020 |
32İzleyin | CVE-2015-1340İstismar yok | chmod race in doUidshiftIntoContainerlinuxcontainers · lxd · CWE-362 | Yüksek8,1 | — | %0,9 | 22 Nis 2019 |
28İzleyin | CVE-2013-6441İstismar yok | The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows llinuxcontainers · lxc · CWE-264 | Yüksek7,2 | — | %0,5 | 14 Şub 2014 |
28İzleyin | CVE-2026-40251İstismar yok | Incus out-of-bounds panic in snapshot metadata handling allows denial of servicelinuxcontainers · incus · CWE-129 | Yüksek7,1 | — | %0,5 | 6 May 2026 |
28İzleyin | CVE-2015-1335İstismar yok | lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attalinuxcontainers · lxc · CWE-59 | Yüksek7,2 | — | %0,5 | 1 Eki 2015 |
28İzleyin | CVE-2026-40197İstismar yok | Incus nil-pointer dereference in custom volume import allows denial of servicelinuxcontainers · incus · CWE-476 | Yüksek7,1 | — | %0,4 | 6 May 2026 |
28İzleyin | CVE-2026-40195İstismar yok | Incus nil-pointer dereference in storage bucket import allows denial of servicelinuxcontainers · incus · CWE-476 | Yüksek7,1 | — | %0,4 | 6 May 2026 |
26İzleyin | CVE-2026-41647İstismar yok | Incus: Nil-Pointer Dereference via S3 Bucket Importlinuxcontainers · incus · CWE-476 | Orta6,5 | — | %0,5 | 7 May 2026 |
26İzleyin | CVE-2026-41684İstismar yok | Incus: Nil Dereferences on Restore via Malformed YAMLlinuxcontainers · incus · CWE-476 | Orta6,5 | — | %0,5 | 7 May 2026 |
26İzleyin | CVE-2026-33743İstismar yok | Incus vulnerable to denial of source through crafted bucket backup filelinuxcontainers · incus · CWE-770 | Orta6,5 | — | %0,4 | 26 Mar 2026 |
22İzleyin | CVE-2026-33542İstismar yok | Incus does not verify combined fingerprint when downloading images from simplestreams serverslinuxcontainers · incus · CWE-295 | Orta5,7 | — | %0,2 | 26 Mar 2026 |
21İzleyin | CVE-2026-41648İstismar yok | Incus: Unbounded YAML Metadata Decode via Parsinglinuxcontainers · incus · CWE-770 | Orta5,3 | — | %0,4 | 7 May 2026 |
21İzleyin | CVE-2026-35527İstismar yok | Incus blind SSRF via image import preflight HEAD requestlinuxcontainers · incus · CWE-918 | Orta5,3 | — | %0,3 | 5 May 2026 |
19İzleyin | CVE-2015-1331İstismar yok | lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*.linuxcontainers · lxc · CWE-59 | Orta4,9 | — | %0,5 | 12 Ağu 2015 |
18İzleyin | CVE-2015-1334İstismar yok | attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux linuxcontainers · lxc · CWE-17 | Orta4,6 | — | %0,4 | 12 Ağu 2015 |
18İzleyin | CVE-2026-33711İstismar yok | Incus vulnerable to local privilege escalation through VM screenshot pathlinuxcontainers · incus · CWE-61 | Orta4,7 | — | %0,2 | 26 Mar 2026 |
- CVE-2019-573664Bu hafta
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequen
YüksekCVSS 8,6SilahlaştırılmışEPSS %98docker · docker11 Şub 2019
- CVE-2026-3389739İzleyin
Incus vulnerable to arbitrary file read and write through pongo templates
KritikCVSS 9,9İstismar yokEPSS %1linuxcontainers · incus26 Mar 2026
- CVE-2026-3394538İzleyin
Abitrary file write through systemd-creds option
KritikCVSS 9,6İstismar yokEPSS %1linuxcontainers · incus26 Mar 2026
- CVE-2016-864937İzleyin
lxc-attach in LXC before 1.0.9 and 2.x before 2.0.6 allows an attacker inside of an unprivileged container to use an inherited file descript
KritikCVSS 9,1İstismar yokEPSS %3linuxcontainers · lxc1 May 2017
- CVE-2026-3389835İzleyin
Local Incus UI web server vulnerable to nuthentication bypass
YüksekCVSS 8,8İstismar yokEPSS %0linuxcontainers · incus26 Mar 2026
- CVE-2016-1012434İzleyin
An issue was discovered in Linux Containers (LXC) before 2016-02-22.
YüksekCVSS 8,6İstismar yokEPSS %2linuxcontainers · lxc9 Oca 2017
- CVE-2026-2395434İzleyin
Incus container image templating arbitrary host file read and write
YüksekCVSS 8,7İstismar yokEPSS %1linuxcontainers · incus22 Oca 2026
- CVE-2026-2395334İzleyin
Incus container environment configuration newline injection
YüksekCVSS 8,7İstismar yokEPSS %0linuxcontainers · incus22 Oca 2026
- CVE-2025-6450734İzleyin
Incus vulnerable to local privilege escalation through custom storage volumes
YüksekCVSS 8,6İstismar yokEPSS %0linuxcontainers · incus10 Kas 2025
- CVE-2017-1864132İzleyin
In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap cont
YüksekCVSS 8,1İstismar yokEPSS %1linuxcontainers · lxc9 Şub 2020
- CVE-2015-134032İzleyin
chmod race in doUidshiftIntoContainer
YüksekCVSS 8,1İstismar yokEPSS %1linuxcontainers · lxd22 Nis 2019
- CVE-2013-644128İzleyin
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows l
YüksekCVSS 7,2İstismar yokEPSS %0linuxcontainers · lxc14 Şub 2014
- CVE-2026-4025128İzleyin
Incus out-of-bounds panic in snapshot metadata handling allows denial of service
YüksekCVSS 7,1İstismar yokEPSS %0linuxcontainers · incus6 May 2026
- CVE-2015-133528İzleyin
lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink atta
YüksekCVSS 7,2İstismar yokEPSS %0linuxcontainers · lxc1 Eki 2015
- CVE-2026-4019728İzleyin
Incus nil-pointer dereference in custom volume import allows denial of service
YüksekCVSS 7,1İstismar yokEPSS %0linuxcontainers · incus6 May 2026
- CVE-2026-4019528İzleyin
Incus nil-pointer dereference in storage bucket import allows denial of service
YüksekCVSS 7,1İstismar yokEPSS %0linuxcontainers · incus6 May 2026
- CVE-2026-4164726İzleyin
Incus: Nil-Pointer Dereference via S3 Bucket Import
OrtaCVSS 6,5İstismar yokEPSS %0linuxcontainers · incus7 May 2026
- CVE-2026-4168426İzleyin
Incus: Nil Dereferences on Restore via Malformed YAML
OrtaCVSS 6,5İstismar yokEPSS %0linuxcontainers · incus7 May 2026
- CVE-2026-3374326İzleyin
Incus vulnerable to denial of source through crafted bucket backup file
OrtaCVSS 6,5İstismar yokEPSS %0linuxcontainers · incus26 Mar 2026
- CVE-2026-3354222İzleyin
Incus does not verify combined fingerprint when downloading images from simplestreams servers
OrtaCVSS 5,7İstismar yokEPSS %0linuxcontainers · incus26 Mar 2026
- CVE-2026-4164821İzleyin
Incus: Unbounded YAML Metadata Decode via Parsing
OrtaCVSS 5,3İstismar yokEPSS %0linuxcontainers · incus7 May 2026
- CVE-2026-3552721İzleyin
Incus blind SSRF via image import preflight HEAD request
OrtaCVSS 5,3İstismar yokEPSS %0linuxcontainers · incus5 May 2026
- CVE-2015-133119İzleyin
lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*.
OrtaCVSS 4,9İstismar yokEPSS %0linuxcontainers · lxc12 Ağu 2015
- CVE-2015-133418İzleyin
attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux
OrtaCVSS 4,6İstismar yokEPSS %0linuxcontainers · lxc12 Ağu 2015
- CVE-2026-3371118İzleyin
Incus vulnerable to local privilege escalation through VM screenshot path
OrtaCVSS 4,7İstismar yokEPSS %0linuxcontainers · incus26 Mar 2026