CVE-2018-15686
26.10.2018, 14:29
A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.Enginsight
Vendor | Product | Version |
---|---|---|
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
canonical | ubuntu_linux | 18.10 |
debian | debian_linux | 8.0 |
systemd_project | systemd | 𝑥 ≤ 239 |
oracle | communications_cloud_native_core_network_function_cloud_native_environment | 1.4.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References