CVE-2026-3888
CVSS 7.8 HIGH: local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's… EPSS 0.2% (6º percentile).
Vulnerabilità · 198 giorni fa
Qualys Threat Research Unit ha divulgato CVE-2026-3888, una vulnerabilità di Local Privilege Escalation che interessa le installazioni predefinite di Ubuntu Desktop 24.04 e successive.
CVSS 7.8 HIGH: local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's… EPSS 0.2% (6º percentile).
3 fonti che coprono questa storia
New Ubuntu Flaw Enables Local Attackers to Gain Root Access
CVE-2026-3888 Ubuntu snap flaw lets local users escalate to root via timing-based exploit
Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit
Ubuntu CVE-2026-3888 flaw exploits cleanup timing in snap-confine to gain root access, risking full system compromise.
CVE-2026-3888: Important Snap Flaw Enables Local Privilege Escalation to Root | Qualys
The Qualys Threat Research Unit has identified a Local Privilege Escalation (LPE) vulnerability affecting default installations of Ubuntu Desktop version 24.04 and later.
Part of the PlainSec briefing for 2026-03-18