CVE-2026-34155CWE-196CWE-347

RAUC: Improper Signing of Plain Bundles Exceeding 2 GiB

High · published March 31, 2026

CVSS v4.0
7.2
EPSS
0%
Percentile
3.7
In the wild
Unconfirmed
What it is

RAUC controls the update process on embedded Linux systems. Prior to version 1.15.2, RAUC bundles using the 'plain' format exceeding a payload size of 2 GiB cause an integer overflow which results in a signature which covers only the first few bytes of the payload. Given such a bundle with a legitimate signature, an attacker can modify the part of the payload which is not covered by the signature. This issue has been patched in version 1.15.2.

The record
Technical detail
CVSS v4.0
7.2 · HIGH
Vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:P/VC:L/VI:H/VA:N/SC:H/SI:H/SA:H
EPSS
0.00141 · 3.7th percentile
Weaknesses
CWE-196 · Unsigned to Signed Conversion Error; CWE-347 · Improper Verification of Cryptographic Signature
Published
2026-03-31T13:28Z
EPSS history
Timeline
  • 31 MAR 13:28Z
    RAUC: Improper Signing of Plain Bundles Exceeding 2 GiB
    cvelistv5