{"id":"DEBIAN-CVE-2026-76235","details":"A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.","modified":"2026-09-14T17:03:33.884723898Z","published":"2026-08-19T13:18:11.637Z","upstream":["CVE-2026-76235"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2026-76235"}],"affected":[{"package":{"name":"cockpit","ecosystem":"Debian:12","purl":"pkg:deb/debian/cockpit?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["287-1","287.1-0+deb12u1","287.1-0+deb12u2","287.1-0+deb12u3","288.1-1","289-1","290-1","291-1","292-1","293-1","294-1","294.1-1","295-1","296-1","297-1","297-1~bpo12+1","298-1","299-1","299-1~bpo12+1","300-1","300.1-1","300.1-1~bpo12+1","301-1","301-1~bpo12+1","302-1","303-1","303-1~bpo12+1","304-1","305-1","305-1~bpo12+1","306-1","306-1~bpo12+1","307-1","307-1~bpo12+1","308-1","308-1~bpo12+1","309-1","309-1~bpo12+1","310-1","310.1-1","310.1-1~bpo12+1","311-1","311-1~bpo12+1","312-1","313-1","314-1","316-1","317-1","317-2","317-3","317-4","317-5","318-1","318-2","318-3","318-4","318-4~bpo12+1","319-1","319-1~bpo12+1","320-1","320-1~bpo12+1","321-1","322-1","322-1~bpo12+1","323-1","323-1~bpo12+1","324-1","324-1~bpo12+1","325-1","325-1~bpo12+1","326-1","327-1","327-1~bpo12+1","328-1","329-1","329-1~bpo12+1","330-1","330-2","330-3","330-4","331-1","331-1~bpo12+1","332-1","333-1","333-1~bpo12+1","334-1","335-1","335-2","335-2~bpo12+1","336-1","337-1","337-1~bpo12+1","338-1","339-1","340-1","341.1-1","342-1","343-1","345-1","345-1~bpo13+1","346-1","346-1~bpo13+1","348-1","348-1~bpo13+1","350-1","350-1~bpo13+1","352-1","352-1~bpo13+1","353.1-1","353.1-1~bpo13+1","354-1","354-1~bpo13+1","355-1","355-1~bpo13+1","356-1","356-1~bpo13+1","358-1","358-1~bpo13+1","360-1","360-1~bpo13+1","362-1","362-1~bpo13+1","365-1","365-1~bpo13+1","366-1","366-1~bpo13+1","367-1","367-1~bpo13+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-76235.json"}},{"package":{"name":"cockpit","ecosystem":"Debian:13","purl":"pkg:deb/debian/cockpit?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"337-1+deb13u2"}]}],"versions":["337-1","337-1+deb13u1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-76235.json"}},{"package":{"name":"cockpit","ecosystem":"Debian:14","purl":"pkg:deb/debian/cockpit?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"366-1"}]}],"versions":["337-1","338-1","339-1","340-1","341.1-1","342-1","343-1","345-1","345-1~bpo13+1","346-1","346-1~bpo13+1","348-1","348-1~bpo13+1","350-1","350-1~bpo13+1","352-1","352-1~bpo13+1","353.1-1","353.1-1~bpo13+1","354-1","354-1~bpo13+1","355-1","355-1~bpo13+1","356-1","356-1~bpo13+1","358-1","358-1~bpo13+1","360-1","360-1~bpo13+1","362-1","362-1~bpo13+1","365-1","365-1~bpo13+1","366-1~bpo13+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-76235.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}