vulnerability
SUSE: CVE-2018-15686: SUSE Linux Security Advisory
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Oct 26, 2018 | Nov 10, 2018 | Feb 4, 2022 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Oct 26, 2018
Added
Nov 10, 2018
Modified
Feb 4, 2022
Description
A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.
Solutions
suse-upgrade-libgudev-1_0-0suse-upgrade-libgudev-1_0-0-32bitsuse-upgrade-libgudev-1_0-develsuse-upgrade-libsystemd0suse-upgrade-libsystemd0-32bitsuse-upgrade-libsystemd0-minisuse-upgrade-libudev-develsuse-upgrade-libudev-devel-32bitsuse-upgrade-libudev-mini-develsuse-upgrade-libudev-mini1suse-upgrade-libudev1suse-upgrade-libudev1-32bitsuse-upgrade-nss-myhostnamesuse-upgrade-nss-myhostname-32bitsuse-upgrade-nss-mymachinessuse-upgrade-nss-mymachines-32bitsuse-upgrade-nss-systemdsuse-upgrade-systemdsuse-upgrade-systemd-32bitsuse-upgrade-systemd-bash-completionsuse-upgrade-systemd-containersuse-upgrade-systemd-coredumpsuse-upgrade-systemd-develsuse-upgrade-systemd-docsuse-upgrade-systemd-journal-remotesuse-upgrade-systemd-langsuse-upgrade-systemd-loggersuse-upgrade-systemd-minisuse-upgrade-systemd-mini-bash-completionsuse-upgrade-systemd-mini-container-minisuse-upgrade-systemd-mini-coredump-minisuse-upgrade-systemd-mini-develsuse-upgrade-systemd-mini-sysvinitsuse-upgrade-systemd-sysvinitsuse-upgrade-typelib-1_0-gudev-1_0suse-upgrade-udevsuse-upgrade-udev-mini
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.