VYPR
Medium severity4.3NVD Advisory· Published Jul 20, 2026· Updated Jul 21, 2026

CVE-2026-16254

CVE-2026-16254

Description

A flaw was found in claircore's apk package scanner. Malformed package-database data in a container layer can cause an out-of-bounds access that panics the scanner. If that panic is not recovered, the Clair indexer process can crash, leading to a denial of service.

Affected products

1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.