Vulnerability Details CVE-2026-41647
Incus is a system container and virtual machine manager. Prior to version 7.0.0, a missing error handling could lead an authenticated Incus user to cause a daemon crash through the import of a truncated storage bucket backup file. This issue has been patched in version 7.0.0.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 6.0%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2026-41647
-
cpe:2.3:a:linuxcontainers:incus:0.1.0
-
cpe:2.3:a:linuxcontainers:incus:0.2.0
-
cpe:2.3:a:linuxcontainers:incus:0.3.0
-
cpe:2.3:a:linuxcontainers:incus:0.4.0
-
cpe:2.3:a:linuxcontainers:incus:0.5.0
-
cpe:2.3:a:linuxcontainers:incus:0.5.1
-
cpe:2.3:a:linuxcontainers:incus:0.6.0
-
cpe:2.3:a:linuxcontainers:incus:0.7.0
-
cpe:2.3:a:linuxcontainers:incus:6.0.0
-
cpe:2.3:a:linuxcontainers:incus:6.0.1
-
cpe:2.3:a:linuxcontainers:incus:6.0.2
-
cpe:2.3:a:linuxcontainers:incus:6.0.3
-
cpe:2.3:a:linuxcontainers:incus:6.0.4
-
cpe:2.3:a:linuxcontainers:incus:6.0.5
-
cpe:2.3:a:linuxcontainers:incus:6.0.6
-
cpe:2.3:a:linuxcontainers:incus:6.1.0
-
cpe:2.3:a:linuxcontainers:incus:6.10.0
-
cpe:2.3:a:linuxcontainers:incus:6.10.1
-
cpe:2.3:a:linuxcontainers:incus:6.11.0
-
cpe:2.3:a:linuxcontainers:incus:6.12.0
-
cpe:2.3:a:linuxcontainers:incus:6.13.0
-
cpe:2.3:a:linuxcontainers:incus:6.14.0
-
cpe:2.3:a:linuxcontainers:incus:6.15.0
-
cpe:2.3:a:linuxcontainers:incus:6.16.0
-
cpe:2.3:a:linuxcontainers:incus:6.17.0
-
cpe:2.3:a:linuxcontainers:incus:6.18.0
-
cpe:2.3:a:linuxcontainers:incus:6.19.0
-
cpe:2.3:a:linuxcontainers:incus:6.19.1
-
cpe:2.3:a:linuxcontainers:incus:6.2.0
-
cpe:2.3:a:linuxcontainers:incus:6.20.0
-
cpe:2.3:a:linuxcontainers:incus:6.3.0
-
cpe:2.3:a:linuxcontainers:incus:6.4.0
-
cpe:2.3:a:linuxcontainers:incus:6.5.0
-
cpe:2.3:a:linuxcontainers:incus:6.6.0
-
cpe:2.3:a:linuxcontainers:incus:6.7.0
-
cpe:2.3:a:linuxcontainers:incus:6.8.0
-
cpe:2.3:a:linuxcontainers:incus:6.9.0