Skip to content
Noroxi

systemd project records

55 published records for vendor systemd project.

All records

55 records
  • In systemd through 233, certain sizes passed to dns_packet_new in systemd-resolved can cause it to allocate a buffer that's too small.

    HighCVSS 7.5No exploitEPSS 55%

    systemd project · systemdJun 28, 2017

  • Stack-based buffer overflow in the getpwnam and getgrnam functions of the NSS module nss-mymachines in systemd.

    CriticalCVSS 9.8No exploitEPSS 4%

    systemd project · systemdSep 25, 2017

  • systemd v233 and earlier fails to safely parse usernames starting with a numeric digit (e.g.

    CriticalCVSS 9.8No exploitEPSS 4%

    systemd project · systemdJul 7, 2017

  • systemd 239 through 245 accepts any certificate signed by a trusted certificate authority for DNS Over TLS.

    CriticalCVSS 9.8No exploitEPSS 3%

    systemd project · systemdOct 30, 2019

  • CVE-2022-2526
    39Monitor

    A use-after-free vulnerability was found in systemd.

    CriticalCVSS 9.8No exploitEPSS 1%

    systemd project · systemdSep 9, 2022

  • In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC resource record to trigger an infinite loop in th

    HighCVSS 7.5No exploitEPSS 24%

    systemd project · systemdOct 26, 2017

  • CVE-2017-9217
    35Monitor

    systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty qu

    HighCVSS 7.5No exploitEPSS 15%

    systemd project · systemdMay 24, 2017

  • Out-of-Bounds write in systemd-networkd dhcpv6 option handling

    HighCVSS 8.8No exploitEPSS 2%

    systemd project · systemdOct 26, 2018

  • CVE-2013-4391
    32Monitor

    Integer overflow in the valid_user_field function in journal/journald-native.c in systemd allows remote attackers to cause a denial of servi

    HighCVSS 7.5No exploitEPSS 5%

    systemd project · systemdOct 28, 2013

  • An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journa

    HighCVSS 7.8No exploitEPSS 3%

    systemd project · systemdJan 11, 2019

  • systemd: reexec state injection: fgets() on overlong lines leads to line splitting

    HighCVSS 7.8Proof of conceptEPSS 2%

    canonical · ubuntu linuxOct 26, 2018

  • A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowi

    HighCVSS 7.8Proof of conceptEPSS 1%

    systemd project · systemdJan 23, 2017

  • systemd-tmpfiles in systemd before 237 attempts to support ownership/permission changes on hardlinked files even if the fs.protected_hardlin

    HighCVSS 7.8Proof of conceptEPSS 1%

    systemd project · systemdJan 29, 2018

  • systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which

    HighCVSS 7.8No exploitEPSS 1%

    debian · debian linuxMar 3, 2023

  • CVE-2019-3843
    31Monitor

    It was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the tr

    HighCVSS 7.8Proof of conceptEPSS 1%

    systemd project · systemdApr 26, 2019

  • CVE-2019-3844
    31Monitor

    It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which

    HighCVSS 7.8Proof of conceptEPSS 1%

    systemd project · systemdApr 26, 2019

  • An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journa

    HighCVSS 7.8No exploitEPSS 1%

    systemd project · systemdJan 11, 2019

  • CVE-2018-6954
    31Monitor

    systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain owne

    HighCVSS 7.8No exploitEPSS 1%

    systemd project · systemdFeb 13, 2018

  • CVE-2020-1712
    31Monitor

    A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while hand

    HighCVSS 7.8No exploitEPSS 0%

    systemd project · systemdMar 31, 2020

  • In systemd 259 before 260, there is local privilege escalation in systemd-machined because varlink can be used to reach the root namespace.

    HighCVSS 7.3No exploitEPSS 0%

    systemd project · systemdApr 10, 2026

  • CVE-2019-3842
    28Monitor

    In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable

    HighCVSS 7.0Proof of conceptEPSS 1%

    systemd project · systemdApr 9, 2019

  • systemd: chown_one() can dereference symlinks

    HighCVSS 7.0Proof of conceptEPSS 1%

    canonical · ubuntu linuxOct 26, 2018

  • CVE-2013-4327
    27Monitor

    systemd does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictio

    MediumCVSS 6.9No exploitEPSS 0%

    systemd project · systemdOct 3, 2013

  • systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits, as demonstrated by

    MediumCVSS 6.7No exploitEPSS 0%

    systemd project · systemdJun 2, 2020

  • basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdup

    MediumCVSS 5.5No exploitEPSS 9%

    systemd project · systemdJul 20, 2021