What is CVE-2026-19519?
A vulnerability in claircore's RPM scanner where crafted RPM headers in a container layer cause an unchecked type assertion leading to a panic. The panic is unrecovered, crashing the Clair indexer process and resulting in a denial of service.
Azərbaycanca: Claircore-un RPM paket skanerində tapılmış zəiflikdir. Xüsusi hazırlanmış RPM başlıq məlumatları olan konteyner təbəqəsi, yoxlanılmamış tip təsdiqi (unchecked type assertion) nəticəsində skanerin çökməsinə (panic) səbəb olur. Nəticədə xidmət dayanması (denial of service) yarana bilər, təsirlənmiş sistemlərdə Clair indexer prosesi bərpa olunmadan sıradan çıxır.
FAQ1
What component of Claircore does CVE-2026-19519 affect?
The vulnerability affects claircore's RPM scanner. Crafted RPM headers in a container layer cause an unchecked type assertion leading to a panic.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.