Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-9640

Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
26/06/2026
Última modificación:
02/07/2026

Descripción

*** Pendiente de traducción *** A privilege escalation vulnerability exists in LXD from 6.0 before 6.9, 5.21.0 before 5.21.5, and 5.0.0 before 5.0.7 regarding the handling of project-restriction policies during snapshot restoration.. An authenticated project operator in a restricted multi-tenant environment can bypass policy restrictions by importing a maliciously crafted instance backup containing restricted configuration keys within a snapshot. When the snapshot is restored, these restricted keys are applied to the live instance without policy validation. Starting the modified instance grants the operator unauthorized host root access.

Productos y versiones vulnerables

CPE Desde Hasta
cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* 4.12 (incluyendo) 5.0.7 (excluyendo)
cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* 5.21.0 (incluyendo) 5.21.5 (excluyendo)
cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* 6.0 (incluyendo) 6.9 (excluyendo)