Search CVE reports


Toggle filters

1 – 10 of 60 results


CVE-2026-40228

Medium priority
Needs evaluation

In systemd 259, systemd-journald can send ANSI escape sequences to the terminals of arbitrary users when a "logger -p emerg" command is executed, if ForwardToWall=yes is set.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-40227

Medium priority
Needs evaluation

In systemd 260 before 261, a local unprivileged user can trigger an assert via an IPC API call with an array or map that has a null element.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-40226

Medium priority
Needs evaluation

In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-40225

Medium priority
Needs evaluation

In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-40224

Medium priority
Needs evaluation

In systemd 259 before 260, there is local privilege escalation in systemd-machined because varlink can be used to reach the root namespace.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-40223

Medium priority
Needs evaluation

In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and User=<unset> unit exists and is running.

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-29111

Medium priority
Fixed

systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call is made with spurious data. On version v249 and older the effect is not an assert, but stack overwriting,...

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Fixed Fixed Fixed Not affected
Show less packages

CVE-2026-4105

Medium priority
Not affected

A flaw was found in systemd. The systemd-machined service contains an Improper Access Control vulnerability due to insufficient validation of the class parameter in the RegisterMachine D-Bus (Desktop Bus) method. A...

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-4598

Medium priority
Fixed

A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read...

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Fixed Fixed Fixed Not affected
Show less packages

CVE-2023-7008

Low priority

Some fixes available 4 of 11

A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to...

1 affected package

systemd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
systemd Fixed Vulnerable Vulnerable Needs evaluation
Show less packages