Where
-Infinity
0

oss-secsnap-confine + systemd-tmpfiles = root (CVE-2026-3888)

Systemd Project SystemdAn issue was discovered in systemd 253. An attacker can modify a sealed log file such that, in some …

Risk 27
Severity
5.3
First published (updated )

Systemd Project Systemdsystemd before 247 does not adequately block local privilege escalation for some Sudo configurations…

Risk 85
Severity
7.8
First published (updated )

systemd systemdsystemd-coredump sets the sysctl fs.suid_dumpable by default to 2 via a sysctl.d drop-in configurati…

Risk 19
Severity
4
First published (updated )

Systemd Project Systemdsystemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash …

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/systemdbasic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with a…

Risk 37
Severity
6.2
First published (updated )

Systemd Project SystemdAn exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCE…

Risk 36
Severity
6.1
First published (updated )

IBM Cloud Pak for Security (CP4S)systemd could allow a local authenticated attacker to gain elevated privileges on the system, caused…

Risk 61
Severity
6.7
First published (updated )

redhat/systemdUse After Free

Risk 72
Severity
7.8
First published (updated )

Canonical Ubuntu LinuxLast updated 24 July 2024

Risk 33
Severity
5.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Systemd Project Systemdsystemd 239 through 245 accepts any certificate signed by a trusted certificate authority for DNS Ov…

Risk 86
Severity
9.8
First published (updated )

Fedoraproject Fedorasystemd-resolved does not properly enforce any access control to its dbus methods, allowing any unpr…

Risk 40
Severity
5.3
First published (updated )

NetApp Cn1610 FirmwareInfoleak

Risk 86
Severity
9.8
First published (updated )

Systemd Project Systemdsystemd could allow a local authenticated attacker to gain elevated privileges on the system, caused…

Risk 67
Severity
7
First published (updated )

redhat Enterprise Linux EusLast updated 24 July 2024

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Canonical Ubuntu LinuxInfoleak

Risk 24
Severity
4.3
First published (updated )

ubuntu/systemdBuffer Overflow

Risk 73
Severity
7.8
First published (updated )

redhat Enterprise Linux ServerBuffer Overflow

Risk 73
Severity
7.8
First published (updated )

Ubuntusystemd: chown_one() can dereference symlinks

Risk 71
Severity
7.8
First published (updated )

systemd systemdsystemd is vulnerable to line splitting via long lines read by fgets() in the unit_deserialize() fun…

Risk 19
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Canonical Ubuntu Linuxsystemd: reexec state injection: fgets() on overlong lines leads to line splitting

Risk 72
Severity
7.8
First published (updated )

Canonical Ubuntu LinuxOut-of-Bounds write in systemd-networkd dhcpv6 option handling

Risk 82
Severity
8.8
First published (updated )

Canonical Ubuntu LinuxLast updated 24 July 2024

Risk 71
Severity
7.8
First published (updated )

Systemd Project Systemdsystemd-tmpfiles in systemd before 237 attempts to support ownership/permission changes on hardlinke…

Risk 69
Severity
7.8
First published (updated )

Systemd Project Systemdsystemd v233 and earlier fails to safely parse usernames starting with a numeric digit (e.g. "0day")…

Risk 87
Severity
10
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Systemd Project SystemdNull Pointer Dereference

Risk 43
Severity
7.5
First published (updated )

Systemd Project SystemdInput Validation

Risk 33
Severity
5.5
First published (updated )

systemd systemdIt was found that systemd fails an assertion in manager_invoke_notify_message when a zero-length mes…

Risk 19
Severity
4
First published (updated )

redhat/systemdInput Validation

Risk 46
Severity
6.8
First published (updated )

Systemd Project SystemdBuffer Overflow

Risk 88
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203