Critical severity9.8NVD Advisory· Published Apr 23, 2019· Updated Jun 17, 2026
CVE-2019-7304
CVE-2019-7304
Description
Canonical snapd before version 2.37.1 incorrectly performed socket owner validation, allowing an attacker to run arbitrary commands as root. This issue affects: Canonical snapd versions prior to 2.37.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/46361nvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/46362nvdExploitThird Party AdvisoryVDB Entry
- usn.ubuntu.com/3887-1/nvdVendor Advisory
News mentions
0No linked articles in our index yet.