logo

Ubuntu Desktop Systems Vulnerability Enables Attackers to Gain Full Root Access

ID: 7f268c2d-c83a-5985-ac94-5ec5db84efb4

STIX ID: report--7f268c2d-c83a-5985-ac94-5ec5db84efb4

Feed Name: cybersecurityNews.com

Threat Score
72/100

Date Published: 2026-03-18

Date Updated: 2026-05-05

Author: Guru Baran

...
...

**CVE-2026-3888:** A local privilege escalation in default Ubuntu Desktop installations (24.04 and later) arises from an unintended interaction between snap-confine and systemd-tmpfiles that allows a low-privileged local attacker to replace /tmp/.snap after tmpfiles cleanup and have snap-confine bind-mount attacker-controlled files as root, resulting in full host compromise; CVSS v3.1 7.8. Qualys TRU also identified a race in the uutils `rm` implementation affecting cron-run operations (mitigated by reverting to GNU coreutils), and vendors have released patched snapd versions which should be applied immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.