Beveiligingsadvies

CVE-2026-9639

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-26 15:39:04
Laatst bijgewerkt 2026-06-26 16:02:11
Toegewezen door canonical
CVSS-score 6.5
Status PUBLISHED

Beschrijving

Nil-pointer dereference in CreateCustomVolumeFromBackup in LXD up to version 6.8 and 5.21 on Linux allows an authenticated user with can_create_storage_volumes permissions to cause a denial of service via a specially crafted custom-volume backup tarball that omits the expires_at snapshot field.