Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

lxc — Vulnerabilities & Security Advisories 41

Browse all 41 CVE security advisories affecting lxc. AI-powered Chinese analysis, POCs, and references for each vulnerability.

LXC provides OS-level virtualization for running multiple isolated Linux systems on a single host. Historically, common vulnerabilities include remote code execution through container breakout flaws, privilege escalation via improper access controls, and cross-container information leaks. Notable security characteristics include its lightweight nature compared to full virtualization, though this can reduce isolation. Major incidents include CVE-2014-3707 allowing privilege escalation and CVE-2016-1587 enabling container escapes. With 22 CVEs on record, security risks often stem from misconfigurations or kernel vulnerabilities affecting container isolation. Proper hardening and kernel updates remain critical for secure deployment.

CVE ID Title CVSS Severity Published
CVE-2026-52727 lxc-ci: Pacman keyring stored in archlinux image with a private key — lxc-ci CWE-321 7.2 High 2026-09-17
CVE-2026-63343 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root — incus CWE-73 9.9 Critical 2026-08-21
CVE-2026-63125 Incus vulnerable to root RCE via image backup.yaml symlink — incus CWE-59 9.9 Critical 2026-08-21
CVE-2026-62941 Incus: Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge — incus CWE-863 9.9 Critical 2026-08-21
CVE-2026-62940 Incus has a project restriction bypass via instance migration config override — incus CWE-862 9.9 Critical 2026-08-21
CVE-2026-62867 Incus has an argument injection in storage volume block.create_options that leads to arbitrary command execution — incus CWE-88 9.9 Critical 2026-08-21
CVE-2026-62313 Incus: Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated` — incus CWE-863 4.3 Medium 2026-08-21
CVE-2026-55622 Incus has a project restriction bypass in instance copy across projects — incus CWE-284 7.7 High 2026-08-21
CVE-2026-55621 Incus has a project restriction bypass for custom volume copy across projects — incus CWE-284 7.7 High 2026-08-21
CVE-2026-48769 Incus has an arbitrary file write on its client due to trusted image hash — incus CWE-20 9.9 Critical 2026-08-21
CVE-2026-48755 Incus has an argument injection in backup compression algorithm leading to AFW and ACE — incus CWE-20 9.9 Critical 2026-08-21
CVE-2026-48754 Incus: Nil-pointer dereference in createDependentVolumesFromBackup on disk.{Volume,VolumeSnapshots,Pool} — incus CWE-476 2.1 Low 2026-08-21
CVE-2026-48753 Incus has an arbitrary file write via path traversal in S3 multipart upload — incus CWE-73 9.9 Critical 2026-08-21
CVE-2026-48752 Incus has arbitrary file read+write on host via templates/ symlink in malicious image — incus CWE-73 9.9 Critical 2026-08-21
CVE-2026-48751 Incus has a restricted project bypass leading to arbitrary command execution — incus CWE-862 9.9 Critical 2026-08-21
CVE-2026-48750 Incus has an arbitrary file write on host via `exec-output` symlink in crafted image — incus CWE-73 9.9 Critical 2026-08-21
CVE-2026-48749 Incus has an arbitrary file read+write on host via rootfs/ symlink in malicious image — incus CWE-73 9.9 Critical 2026-08-21
CVE-2026-47753 Incus has a Nil-Pointer Dereference Panic via Instance Backup Import (volume omitted) — incus CWE-476 4.4 Medium 2026-08-21
CVE-2026-48756 Incus: CreateCustomVolumeFromBackup nil-pointer dereference on volume_snapshots[*].expires_at (sibling-field variant of GHSA-r7w7) — incus CWE-476 2.1 Low 2026-08-21
CVE-2026-41685 Incus: Unbounded binary import disk exhaustion — incus CWE-770 4.3 Medium 2026-05-07
CVE-2026-41684 Incus: Nil Dereferences on Restore via Malformed YAML — incus CWE-476 6.5 Medium 2026-05-07
CVE-2026-41648 Incus: Unbounded YAML Metadata Decode via Parsing — incus CWE-770 6.5AI Medium AI 2026-05-07
CVE-2026-41647 Incus: Nil-Pointer Dereference via S3 Bucket Import — incus CWE-476 6.5 Medium 2026-05-07
CVE-2026-40251 Incus out-of-bounds panic in snapshot metadata handling allows denial of service — incus CWE-129 6.5AI Medium AI 2026-05-06
CVE-2026-40243 Incus OVN TLS verification accepts peer-supplied roots and permits endpoint impersonation — incus CWE-295 9.1AI Critical AI 2026-05-06
CVE-2026-40197 Incus nil-pointer dereference in custom volume import allows denial of service — incus CWE-476 6.5AI Medium AI 2026-05-06
CVE-2026-40195 Incus nil-pointer dereference in storage bucket import allows denial of service — incus CWE-476 6.5AI Medium AI 2026-05-06
CVE-2026-39402 lxc lxc-user-nic insufficient ownership validation allows cross-tenant OVS port deletion — lxc CWE-863 5.5 - 2026-05-05
CVE-2026-35527 Incus blind SSRF via image import preflight HEAD request — incus CWE-918 - - 2026-05-05
CVE-2026-33945 Abitrary file write through systemd-creds option — incus CWE-22 10.0 Critical 2026-03-26

This page lists every published CVE security advisory associated with lxc. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.