Database/Container, Kubernetes & orchestration
containerd overlaybd: integer overflow loading LSMT index from an untrusted image blob
Impact
overlaybd through 1.0.18 computes index_bytes while loading an LSMT index without overflow checking, and the overflowed size leads to out-of-bounds heap access. The input is an overlaybd blob pulled from a registry, so whoever controls an image controls the data. The record scores it network-reachable with no authentication, scope-changed, availability-only impact - a crash of the overlaybd service rather than a demonstrated code-execution path. On a GPU fleet that uses overlaybd for accelerated image pulls, the service is shared by every container on the node, so one tenant's malicious or mirrored image can take image mounts down for co-tenants on the same host. Nodes running plain overlayfs snapshotting are unaffected.
Who can reach it
Anyone who can get an overlaybd-formatted blob onto a registry the node pulls from - a tenant pushing their own image, or a compromised or typo-squatted upstream. No authentication to the node is needed; the scenario in the record involves multiple overlaybd-backed containers on the host.
What to do
Update overlaybd past 1.0.18 to a build containing the two fix commits linked in the record and restart the overlaybd service and snapshotter on each node; running containers with mounted overlaybd devices will need to be recreated. If you cannot patch promptly, restrict pulls to a registry you control and admission-gate image sources, or switch the affected node pools back to the default overlayfs snapshotter.
References
Related entries
- regclient: registry credentials can leak to an attacker-controlled blob host via foreign blob URLsCVE-2026-49349 · regclient (foreign blob handling, external registry URLs)Medium
- containerd: CRI ExecSync I/O drain never times out, leaking goroutines until the OOM killer takes the runtimeCVE-2026-53495 · containerd CRI plugin (ExecSync I/O drain in container_execsync.go)Medium
- BuildKit: oversized Dockerfile or .dockerignore exhausts buildkitd memory and kills concurrent buildsCVE-2026-93323 · BuildKit Dockerfile frontend (Dockerfile/.dockerignore size limit)Medium
- Kubernetes (kube-apiserver): A node can delete itself, and cascade-delete other objects, by adding an OwnerReferenceCVE-2025-5187 · Kubernetes (kube-apiserver)Medium
- JFrog Artifactory Helm chart: generated TLS private keys retained in rendered manifestsCVE-2026-66016 · JFrog Artifactory self-hosted Helm deployment (generated TLS private keys)Medium
- Kubernetes (kube-apiserver): Node address not verified when proxyingCVE-2022-3294 · Kubernetes (kube-apiserver)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.