← Späť na vyhľadávanie CVE

CVE-2026-48755

Incus

Popis

Incus is a system container and virtual machine manager. Prior to version 7.1.0, improper validation of user-provided backup compression algorithm leads to argument injection in the constructed command line. This leads to an arbitrary file write on the host, possibly leading to arbitrary command execution. Version 7.1.0 patches the issue.

CVSS 9.9EPSS 0.439%Riziko 1.03
Zobraziť zdroj
Zverejnené
2026-08-21 15:16:41
Dotknuté verzie
<7.1.0
Typ
Kritický softvér
Posledná úprava
2026-08-21 22:16:37
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H