Link following in LXD - CVE-2026-63293
Published: August 1, 2026
LXD
Detailed vulnerability description
The vulnerability allows a remote user to read and overwrite arbitrary files on the host as root.
The vulnerability exists due to improper link resolution in the metadata.yaml handling in the instance metadata API when processing a crafted image containing a metadata.yaml symlink and handling metadata GET or PUT requests. A remote user can import a crafted image and send metadata API requests to access the symlink target to read and overwrite arbitrary files on the host as root.
The issue can be exploited entirely through the daemon API without requiring a privileged container, a running workload, or a kernel exploit, and project-restricted users can trigger it.