CVE-2026-34155: RAUC: Improper Signing of Plain Bundles Exceeding 2 GiB
RAUC controls the update process on embedded Linux systems. Prior to version 1.15.2, RAUC bundles using the 'plain' format exceeding a payload size of 2 GiB cause an integer overflow which results in a signature which covers only the first few bytes of the payload. Given such a bundle with a legitimate signature, an attacker can modify the part of the payload which is not covered by the signature. This issue has been patched in version 1.15.2.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
RAUCto a version that resolves this vulnerability.Fixed in 1.15.2
Event History
Frequently Asked Questions
What is the severity of CVE-2026-34155?
CVE-2026-34155 has been classified with a critical severity due to potential security risks in the update process.
How do I fix CVE-2026-34155?
To remediate CVE-2026-34155, upgrade to RAUC version 1.15.2 or later.
What vulnerabilities does CVE-2026-34155 introduce?
CVE-2026-34155 introduces an integer overflow vulnerability that affects the signing of RAUC plain bundles exceeding 2 GiB.
Which versions of RAUC are affected by CVE-2026-34155?
RAUC versions prior to 1.15.2 are affected by CVE-2026-34155.
What is the consequence of the CVE-2026-34155 vulnerability?
The consequence of CVE-2026-34155 is that it can lead to improper signing of update bundles, which may compromise the integrity of the update process.