CVE-2018-15687 is a race condition vulnerability in the chown_one() function of systemd, affecting versions up to and including 239, which allows an authenticated local attacker to set arbitrary permissions on arbitrary files. This vulnerability carries a CVSS score of 7.0 (HIGH) due to its high impact on confidentiality, integrity, and availability, though it requires high attack complexity. While there is no evidence of active exploitation, an ExploitDB entry (EDB-45715) exists, and there is minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:* | ||
18.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* | ||
18.10CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:* | ||
>= 235, < 240CPE matchmatch criteria | cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2018-15687
Aug 11, 2020systemd: Dereference of symlinks in chown_recursive.c:chown_one() allows for modification of file privileges
Oct 26, 2018systemd: chown_one() can dereference symlinks
Oct 9, 2018