CVE-2026-3888
CVSS 7.8 HIGH: local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's… EPSS 0.2% (6º percentile).
Vulnerabilità ed exploit
Qualys Threat Research Unit ha divulgato CVE-2026-3888, una vulnerabilità di Local Privilege Escalation che interessa le installazioni predefinite di Ubuntu Desktop 24.04 e successive.
3 fonti · 18 mar
CVSS 7.8 HIGH: local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's… EPSS 0.2% (6º percentile).
Infosecurity Magazine
New Ubuntu Flaw Enables Local Attackers to Gain Root Access
CVE-2026-3888 Ubuntu snap flaw lets local users escalate to root via timing-based exploit
originaleThe Hacker News
Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit
Ubuntu CVE-2026-3888 flaw exploits cleanup timing in snap-confine to gain root access, risking full system compromise.
originaleQualys
CVE-2026-3888: Important Snap Flaw Enables Local Privilege Escalation to Root | Qualys
The Qualys Threat Research Unit has identified a Local Privilege Escalation (LPE) vulnerability affecting default installations of Ubuntu Desktop version 24.04 and later.
originalePart of the PlainSec briefing for 2026-03-18
Every edition of this story: Falla Snap su Ubuntu Consente Escalation Locale a Root