CVE-2017-18078 is a local privilege escalation vulnerability in systemd-tmpfiles, affecting systemd versions before 237 and various Debian and openSUSE distributions. It allows a local attacker to bypass access restrictions by manipulating hardlinked files, even when fs.protected_hardlinks is disabled. With a CVSS score of 7.8 (High), this vulnerability enables an attacker to achieve high confidentiality, integrity, and availability impacts. While there is no evidence of active exploitation in the wild or significant community discussion, a proof-of-concept exploit (EDB-43935) is publicly available.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 237CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:* | ||
8.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* | ||
42.3CPE matchmatch criteria | cpe:2.3:o:opensuse:leap:42.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.