VDB

GCVE-110-OSM-2026-12868

GCVE-110-OSM-2026-12868
Advisory PublishedCVSS 8.8/10
Vulnetix · Advisory published September 9, 2026
setup.py executes at pip install time and performs installer-side credential and host reconnaissance. It queries the GCE/GCP metadata service at http://metadata.google.internal/computeMetadata/v1/instance/service-accounts/default/token with the Metadata-Flavor: Google header to obtain the default service account's OAuth access token, service account email, and project id. It also filters os.environ for keys containing token, secret, key, pass, auth, google, project, docker, kube, or metadata substrings, and collects hostname, uid/gid/pid, the output of the id command, os.uname(), /proc/version, os.listdir('/'), and checks for /var/run/docker.sock. It performs an outbound TCP connect to 8.8.8.8:53 to test network reachability. The collected data is persisted to a JSON file inside the installed package directory. Naming (bq-sdist-probe-vrp) and behavior are consistent with a probe that harvests installer-owned cloud credentials in CI/build environments. ENTRY bq_sdist_probe/__init__.py (module-import: 3) EXFIL - System Information Exfiltration in setup.py: "os.getcwd() r["uid"] = os.getuid() r["gid"] = os.getgid() r["pid"] = os.getpid()..." - Network Request in setup.py: "Request("http:" - System Information Collection in setup.py: "socket.gethostname()" ADDITIONAL FINDINGS - Shell Command Execution in setup.py: "subprocess.check_output(" PAYLOAD FILES setup.py

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Risk Scores

CVSS 3.1
8.8/10
High · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
unknownbq-sdist-probe-vrpall (affected)—

References

advisory
vendor

Browse GCVE Records

3,105 records in the GCVE database · Updated October 4, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›