CVE-2018-15686

HIGH

Description

A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.

References

http://www.securityfocus.com/bid/105747

https://access.redhat.com/errata/RHSA-2019:2091

https://github.com/systemd/systemd/pull/10519

https://lists.debian.org/debian-lts-announce/2018/11/msg00017.html

https://security.gentoo.org/glsa/201810-10

https://usn.ubuntu.com/3816-1/

https://www.exploit-db.com/exploits/45714/

Details

Source: MITRE

Published: 2018-10-26

Updated: 2019-08-06

Type: CWE-502

Risk Information

CVSS v2.0

Base Score: 10

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 10

Severity: HIGH

CVSS v3.0

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 3.9

Severity: CRITICAL