Vulnerability index

Browse CVEs

20 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Systemd HIGH 7.3
CVE-2026-40224

In systemd 259 before 260, there is local privilege escalation in systemd-machined because varlink can be used to reach the root namespace.

Fix: 259.3+
Fix from $1,950 2026-04-10
Systemd MEDIUM 6.4
CVE-2026-40225

In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output.

Fix: 257.13 / 258.7+
Fix from $1,600 2026-04-10
Systemd MEDIUM 6.4
CVE-2026-40226

In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.

Fix: 257.12 / 258.6+
Fix from $1,600 2026-04-10
Systemd MEDIUM 5.5
CVE-2026-40227

In systemd 260 before 261, a local unprivileged user can trigger an assert via an IPC API call with an array or map that has a null element.

Mitigation only
Fix from $1,600 2026-04-10
Systemd MEDIUM 5.5
CVE-2026-40223

In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and User=<unset> unit exists and is running.

Fix: 260+
Fix from $1,600 2026-04-10
Systemd MEDIUM 5.5
CVE-2026-29111

systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call is made with spurious data. …

Fix: 257.11 / 258.5+
Fix from $1,600 2026-03-23
Systemd MEDIUM 5.9
CVE-2023-7008

A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have n…

Mitigation only
Fix from $1,600 2023-12-23
Systemd MEDIUM 5.3
CVE-2023-31437

An issue was discovered in systemd 253. An attacker can modify a sealed log file such that, in some views, not all existing and sealed log messages a…

Mitigation only
Fix from $1,600 2023-06-13
Systemd MEDIUM 5.3
CVE-2023-31438

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows…

Patch available
Fix from $1,600 2023-06-13
Systemd MEDIUM 5.3
CVE-2023-31439

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that ch…

Patch available
Fix from $1,600 2023-06-13
Systemd MEDIUM 5.5
CVE-2022-4415

A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpab…

Fix: 253+
Fix from $1,600 2023-01-11
Systemd CRITICAL 9.8
CVE-2022-2526

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'reso…

Patch available
Fix from $2,300 2022-09-09
Systemd MEDIUM 5.5
CVE-2012-1101

systemd 37-1 does not properly handle non-existent services, which causes a denial of service (failure of login procedure).

Patch available
Fix from $1,600 2020-03-11
Systemd CRITICAL 9.8
CVE-2015-7510

Stack-based buffer overflow in the getpwnam and getgrnam functions of the NSS module nss-mymachines in systemd.

Patch available
Fix from $2,300 2017-09-25
Systemd CRITICAL 9.8
CVE-2017-1000082

systemd v233 and earlier fails to safely parse usernames starting with a numeric digit (e.g. "0day"), running the service in question with root privi…

Fix: 234+
Fix from $2,300 2017-07-07
Systemd HIGH 7.5
CVE-2017-9445EPSS 55%

In systemd through 233, certain sizes passed to dns_packet_new in systemd-resolved can cause it to allocate a buffer that's too small. A malicious DN…

Fix: after 233
Fix from $1,950 2017-06-28
Systemd HIGH 7.5
CVE-2017-9217EPSS 15%

systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question se…

Fix: after 233
Fix from $1,950 2017-05-24
Systemd HIGH 7.8
CVE-2016-10156

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local …

Patch available
Fix from $1,950 2017-01-23
Systemd MEDIUM 6.3
CVE-2012-0871

The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or…

Fix: after 037
Fix from $1,600 2014-04-18
Systemd MEDIUM 5.0
CVE-2013-4392

systemd, when updating file permissions, allows local users to change the permissions and SELinux security contexts for arbitrary files via a symlink…

Fix: 239+
Fix from $1,600 2013-10-28