Database/Kernel, userspace & hypervisor
systemd: Privilege escalation via the systemctl `less` pager when sudo-granted systemctl is available
CVSS 6.3CVE-2023-26604Kernel, userspace & hypervisorcurated
Impact
Privilege escalation via the systemctl less pager when sudo-granted systemctl is available
Who can reach it
Local user with any sudo systemctl grant
What to do
Package update; audit sudoers for systemctl grants. No reboot
References
Related entries
- Linux kernel (net/sched SFQ): Missing limit validation in sch_sfq - out-of-bounds writeCVE-2025-37752 · Linux kernel (net/sched SFQ)Medium
- libssh SCP client: malicious server can write files outside the client's working directoryCVE-2026-0964 · libssh SCP client (server-supplied path handling)Medium
- Linux kernel (drivers/pci/hotplug): A power fault on a PCIe hotplug slot latches a sticky status bit that the hardirqCVE-2021-47617 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/iommu/arm/arm-smmu-v3): A process using SVA that unmaps memory drives a flood of SMMU rangeCVE-2023-52484 · Linux kernel (drivers/iommu/arm/arm-smmu-v3)Medium
- QEMU e1000: guest-triggered stack overflow in the loopback receive path crashes the host QEMU processCVE-2025-12464 · QEMU e1000 network device (e1000_receive_iov loopback path)Medium
- Linux kernel (drivers/iommu): The ARM long-descriptor unmap path returns a negative errno through an unsigned size_tCVE-2026-23067 · Linux kernel (drivers/iommu)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.