Security Advisory

CVE-2018-15686

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-10-26 14:00:00
Last updated 2025-06-09 15:50:48
Assigner canonical
CVSS score 7.0
State PUBLISHED

Description

A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.