VYPR

rpm package

suse/systemd&distro=SUSE Linux Enterprise Desktop 12 SP4

pkg:rpm/suse/systemd&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP4

Vulnerabilities (9)

  • CVE-2020-1712Mar 31, 2020
    affected < 228-150.82.1fixed 228-150.82.1

    A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while handling dbus messages. A local unprivileged attacker can abuse this flaw to crash systemd services or potentially execute code and elevate thei

  • CVE-2019-3842Apr 9, 2019
    affected < 228-150.66.4fixed 228-150.66.4

    In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be

  • CVE-2019-6454Mar 17, 2019
    affected < 228-150.63.1fixed 228-150.63.1

    An issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-objects.c allocates a variable-length stack buffer for temporarily storing the object path of incoming D-Bus messages. An unprivileged local user can exploit this by sending a speciall

  • CVE-2018-16865Jan 11, 2019
    affected < 228-150.58.1fixed 228-150.58.1

    An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when many entries are sent to the journal socket. A local attacker, or a remote one if systemd-journal-remote is used, may use this flaw

  • CVE-2018-16864Jan 11, 2019
    affected < 228-150.58.1fixed 228-150.58.1

    An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when a program with long command line arguments calls syslog. A local attacker may use this flaw to crash systemd-journald or escalate hi

  • CVE-2018-16866Jan 11, 2019
    affected < 228-150.58.1fixed 228-150.58.1

    An out of bounds read was discovered in systemd-journald in the way it parses log messages that terminate with a colon ':'. A local attacker can use this flaw to disclose process memory data. Versions from v221 to v239 are vulnerable.

  • CVE-2018-15688Oct 26, 2018
    affected < 228-150.53.3fixed 228-150.53.3

    A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

  • CVE-2018-15686Oct 26, 2018
    affected < 228-150.53.3fixed 228-150.53.3

    A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versi

  • CVE-2018-6954Feb 13, 2018
    affected < 228-150.66.4fixed 228-150.66.4

    systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory w