← All Advisories

LXD NVIDIA Instance Configuration Handler Accepts Newline Characters in nvidia.driver.capabilities and nvidia.require.* Values, Letting Authenticated Attackers Inject Arbitrary Directives into the GPU Configuration

Last refreshed2026-09-28

Status: UPDATED  |  Advisory ID: CVE-2026-63298

Key Details

CVECVE-2026-63298
CVSS Score / Version9.9 (Critical) / CVSS v3.1
Updated2026-09-11
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is low; user interaction is none; scope is changed; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected productscanonical lxd
Classified asCWE-78 (Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'))

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
canonicallxd
SubsystemsGeneral OT
SectorsMultiple

What to Know

An improper neutralization of special elements vulnerability in LXD's NVIDIA instance configuration handling allows an authenticated attacker to inject arbitrary configuration directives. By supplying newline characters within the 'nvidia.driver.capabilities' or 'nvidia.require.*' configuration values, an attacker can manipulate the generated lxc.conf file. This flaw enables the attacker to execute arbitrary code on the host system with the privileges of the LXD daemon. (NVD)

What to Do

Monitor canonical's web page for any future patch releases. See vendor advisory link below.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-63298
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-63298
Vendor advisoryhttps://github.com/canonical/lxd/security/advisories/GHSA-vfh7-q59q-54v2