logo

CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections

ID: d3b99290-bf64-5c23-8fed-c7e9f8ece86a

STIX ID: report--d3b99290-bf64-5c23-8fed-c7e9f8ece86a

Feed Name: Security Affairs

Threat Score
70/100

Date Published: 2026-07-22

Date Updated: 2026-07-22

Author: Pierluigi Paganini

...
...

Qualys disclosed high-severity local privilege escalation vulnerabilities in Ubuntu's snap system (notably CVE-2026-8933 and CVE-2026-3888) that rely on race conditions and timing windows in snap-confine and systemd-tmpfiles, allowing an unprivileged local user to escalate to root; Canonical has released snapd updates and users should apply them promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.