CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100839

HIGHCVSS 8.4NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest kernel's ACPI/AML handling is vulnerable to an AML injection attack ("BadAML"). ACPI tables containing AML bytecode are passed from the untrusted host (QEMU) to the guest firmware (OVMF) and on to the L

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100839 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100839

HIGHCVSS 8.4NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest kernel's ACPI/AML handling is vulnerable to an AML injection attack ("BadAML"). ACPI tables containing AML bytecode are passed from the untrusted host (QEMU) to the guest firmware (OVMF) and on to the L

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]