Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2019-3842

34
FAUCET Score

CVE-2019-3842 describes a vulnerability in systemd versions prior to v242-rc4, specifically within the pam_systemd module, affecting products like Debian, Fedora, and Red Hat. An attacker can manipulate the XDG_SEAT environment variable to bypass polkit policy checks, allowing commands to be evaluated with "allow_active" instead of "allow_any" in certain configurations. This vulnerability carries a high CVSS score of 7.0, indicating a local attack vector with high impact on confidentiality, integrity, and availability, though with high attack complexity. There is no evidence of active exploitation, and while an ExploitDB entry (EDB-46743) exists, there is no Metasploit or Nuclei support, and minimal community or media discussion.

Impacted Technologies

VendorProductVersion(s)CPE
<= 241CPE matchmatch criteria
cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:*
242CPE matchmatch criteria
cpe:2.3:a:systemd_project:systemd:242:rc1:*:*:*:*:*:*
242CPE matchmatch criteria
cpe:2.3:a:systemd_project:systemd:242:rc2:*:*:*:*:*:*
242CPE matchmatch criteria
cpe:2.3:a:systemd_project:systemd:242:rc3:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

4.5MEDIUM

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
LOW
Exploitability Score
1.0
Impact Score
3.4
CvssVersion
3.0

Exploit Intelligence

EPSS Score
1.22%
Probability of exploitation in next 30 days
EPSS Percentile
65.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
ExploitDB: EDB-46743 · Apr 23, 2019
This CVE's current EPSS score of 0.0122 is in the 93rd percentile among its peer group of 1,516 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 239-34
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 239-34
microsoftpatch availablevia msrc
Product: cm1 systemd 239-34 on CBL Mariner 1.0Fixed in: -
microsoftpatch availablevia msrc
Product: 17047-16820Fixed in: -
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Extended Update SupportFixed in: systemd-0:239-31.el8_2.7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: systemd-0:239-45.el8
View patch
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: systemd

Vendor Advisories (3)

microsoft2020-Aug/CVE-2019-3842

CVE-2019-3842

Aug 11, 2020
microsoft2019-Apr/CVE-2019-3842Important

In systemd before v242-rc4 it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker in some particular configurations to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".

Apr 9, 2019
redhatCVE-2019-3842Moderate

systemd: Spoofing of XDG_SEAT allows for actions to be checked against "allow_active" instead of "allow_any"

Apr 8, 2019

References

lists.opensuse.org / opensuse-security-announce/2019-05/msg00062.html
Third Party Advisory
packetstormsecurity.com / files/152610/systemd-Seat-Verification-Active-Session-Spoofing.html
ExploitThird Party AdvisoryVDB Entry
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
lists.apache.org / thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E
lists.apache.org / thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E
lists.debian.org / debian-lts-announce/2019/04/msg00022.html
Third Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/STR36RJE4ZZIORMDXRERVBHMPRNRTHAC
exploit-db.com / exploits/46743
ExploitThird Party AdvisoryVDB Entry