CVE-2026-34179 is a critical privilege escalation vulnerability affecting Canonical LXD versions 4.12 through 6.7, wherein the doCertificateUpdate function fails to properly validate the Type field during PUT/PATCH requests to certificate endpoints, enabling authenticated attackers with restricted TLS certificate access to escalate privileges to cluster administrator level. This vulnerability has a CVSS severity rating of 9.1 (CRITICAL) with a network-based attack vector requiring high privileges but no user interaction, resulting in complete compromise of confidentiality, integrity, and availability across connected systems. The vulnerability is not currently listed on CISA's Known Exploited Vulnerabilities catalog, has low EPSS probability of exploitation at 0.0011, and shows inactive status on vulnerability tracking hotlists, suggesting no active exploitation in the wild at this time. However, the extreme CVSS score and the fundamental nature of the flaw (missing input validation in privileged operations) warrant immediate patching regardless of exploitation status. Organizations running affected LXD versions should prioritize updates to versions 6.8 or later to remediate this cluster-level privilege escalation risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.12.0, < 5.0.7CPE match | cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* | ||
>= 5.1.0, < 5.21.5CPE match | cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* | ||
>= 6.0.0, < 6.8.0CPE match | cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* | ||
>= 4.12, <= 5.0.6CPE matchmatch criteria | cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* | ||
>= 5.21.0, <= 5.21.4CPE matchmatch criteria | cpe:2.3:a:canonical:lxd:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.7 Bluesky, 0.4 Mastodon, and 1.7 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.