Vulnerability index

Browse CVEs

20 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.3 CVE-2026-40224 In systemd 259 before 260, there is local privilege escalation in systemd-machined because varlink can be used to reach the root namespace. Systemd 259.3+ Fix from $1,9502026-04-10 MEDIUM 6.4 CVE-2026-40225 In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. Systemd 257.13 / 258.7+ Fix from $1,6002026-04-10 MEDIUM 6.4 CVE-2026-40226 In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. Systemd 257.12 / 258.6+ Fix from $1,6002026-04-10 MEDIUM 5.5 CVE-2026-40227 In systemd 260 before 261, a local unprivileged user can trigger an assert via an IPC API call with an array or map that has a null element. Systemd Mitigation only Fix from $1,6002026-04-10 MEDIUM 5.5 CVE-2026-40223 In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and User=<unset> unit exists and is running. Systemd 260+ Fix from $1,6002026-04-10 MEDIUM 5.5 CVE-2026-29111 systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call is made with spurious data. … Systemd 257.11 / 258.5+ Fix from $1,6002026-03-23 MEDIUM 5.9 CVE-2023-7008 A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have n… Systemd Mitigation only Fix from $1,6002023-12-23 MEDIUM 5.3 CVE-2023-31437 An issue was discovered in systemd 253. An attacker can modify a sealed log file such that, in some views, not all existing and sealed log messages a… Systemd Mitigation only Fix from $1,6002023-06-13 MEDIUM 5.3 CVE-2023-31438 An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows… Systemd Patch available Fix from $1,6002023-06-13 MEDIUM 5.3 CVE-2023-31439 An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that ch… Systemd Patch available Fix from $1,6002023-06-13 MEDIUM 5.5 CVE-2022-4415 A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpab… Systemd 253+ Fix from $1,6002023-01-11 CRITICAL 9.8 CVE-2022-2526 A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'reso… Systemd Patch available Fix from $2,3002022-09-09 MEDIUM 5.5 CVE-2012-1101 systemd 37-1 does not properly handle non-existent services, which causes a denial of service (failure of login procedure). Systemd Patch available Fix from $1,6002020-03-11 CRITICAL 9.8 CVE-2015-7510 Stack-based buffer overflow in the getpwnam and getgrnam functions of the NSS module nss-mymachines in systemd. Systemd Patch available Fix from $2,3002017-09-25 CRITICAL 9.8 CVE-2017-1000082 systemd v233 and earlier fails to safely parse usernames starting with a numeric digit (e.g. "0day"), running the service in question with root privi… Systemd 234+ Fix from $2,3002017-07-07 HIGH 7.5 CVE-2017-9445EPSS 55% In systemd through 233, certain sizes passed to dns_packet_new in systemd-resolved can cause it to allocate a buffer that's too small. A malicious DN… Systemd after 233 Fix from $1,9502017-06-28 HIGH 7.5 CVE-2017-9217EPSS 15% systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question se… Systemd after 233 Fix from $1,9502017-05-24 HIGH 7.8 CVE-2016-10156 A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local … Systemd Patch available Fix from $1,9502017-01-23 MEDIUM 6.3 CVE-2012-0871 The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or… Systemd after 037 Fix from $1,6002014-04-18 MEDIUM 5.0 CVE-2013-4392 systemd, when updating file permissions, allows local users to change the permissions and SELinux security contexts for arbitrary files via a symlink… Systemd 239+ Fix from $1,6002013-10-28