Canonical Lxd vulnerabilities
29 known vulnerabilities affecting canonical/lxd.
Total CVEs
29
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH7MEDIUM14LOW2
Vulnerabilities
Page 2 of 2
CVE-2025-54290P4MEDIUMCVSS 5.3≥ 4.0.0, < 5.21.4≥ 6.1, < 6.5+2 more2025-10-02
CVE-2025-54290 [MEDIUM] CWE-200 CVE-2025-54290: Information disclosure in image export API in Canonical LXD before 6.5 and 5.21.4 on Linux allows ne
Information disclosure in image export API in Canonical LXD before 6.5 and 5.21.4 on Linux allows network attackers to determine project existence without authentication via crafted requests using wildcard fingerprints.
nvd
CVE-2026-28385P4MEDIUMCVSS 5.0≥ 4.12, ≤ 6.9≥ 6.0, < 6.102026-06-26
CVE-2026-28385 [MEDIUM] CWE-918 CVE-2026-28385: In Canonical LXD versions 4.12 through 6.9, a Server-Side Request Forgery (SSRF) vulnerability in th
In Canonical LXD versions 4.12 through 6.9, a Server-Side Request Forgery (SSRF) vulnerability in the image import functionality allows authenticated users with the can_create_images entitlement to interact with internal network infrastructure via the /images endpoint. When importing an image from a URL source, the LXD daemon fails to validate or re
nvd
CVE-2025-54292P4MEDIUMCVSS 4.6≥ 5.0.0, < 5.21.4≥ 6.0, < 6.5+1 more2025-10-02
CVE-2025-54292 [MEDIUM] CWE-22 CVE-2025-54292: Path traversal in Canonical LXD LXD-UI versions before 6.5 and 5.21.4 on all platforms allows remote
Path traversal in Canonical LXD LXD-UI versions before 6.5 and 5.21.4 on all platforms allows remote authenticated attackers to access or modify unintended resources via crafted resource names embedded in URL paths.
nvd
CVE-2026-33542P4MEDIUMCVSS 5.7≥ 0, < 5.0.2-5+deb12u4≥ 0, < 5.0.2+git20231211.1364ae4-9+deb13u42026-03-26
CVE-2026-33542 [MEDIUM] CVE-2026-33542: Incus is a system container and virtual machine manager
Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker controlled images rather than the expected one. Version 6.23.0 patches the issue.
osv
CVE-2016-1582P4MEDIUMCVSS 5.5v2.0.12016-06-09
CVE-2016-1582 [MEDIUM] CWE-200 CVE-2016-1582: LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into pri
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container directory via unspecified vectors.
nvdosv
CVE-2016-1581P4MEDIUMCVSS 5.5≤ 2.0.12016-06-09
CVE-2016-1581 [MEDIUM] CWE-284 CVE-2016-1581: LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when setting up a loop bas
LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when setting up a loop based ZFS pool, which allows local users to copy and read data from arbitrary containers via unspecified vectors.
nvdosv
CVE-2026-3351P4MEDIUMCVSS 4.3v6.62026-03-03
CVE-2026-3351 [MEDIUM] CWE-862 CVE-2026-3351: Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allow
Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allows an authenticated, restricted user to enumerate all certificate fingerprints trusted by the lxd server.
nvd
CVE-2024-6156P4LOWCVSS 3.8≥ 4.0.0, < 4.0.10≥ 5.0.0, < 5.0.4+1 more2024-12-06
CVE-2024-6156 [LOW] CWE-295 CVE-2024-6156: Mark Laing discovered that LXD's PKI mode, until version 5.21.2, could be bypassed if the client's c
Mark Laing discovered that LXD's PKI mode, until version 5.21.2, could be bypassed if the client's certificate was present in the trust store.
nvd
CVE-2024-6219P4LOWCVSS 3.8fixed in 5.21.12024-12-06
CVE-2024-6219 [LOW] CWE-295 CVE-2024-6219: Mark Laing discovered in LXD's PKI mode, until version 5.21.1, that a restricted certificate could b
Mark Laing discovered in LXD's PKI mode, until version 5.21.1, that a restricted certificate could be added to the trust store with its restrictions not honoured.
nvd
← Previous2 / 2