Security News

Cybersecurity news aggregator

🐧
MEDIUM Vulnerabilities Ubuntu Security

USN-8102-1: snapd vulnerability

  • What: A privilege escalation vulnerability in snapd on Ubuntu.
  • Impact: Local attackers could exploit this to gain elevated privileges.
Read Full Article →

Ubuntu Security Notices USN-8102-1 USN-8102-1: snapd vulnerability Publication date 17 March 2026 Overview snapd could be used to escalate privilege Releases 25.10 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS Open side navigation Close side navigation Packages Details Update instructions References Packages snapd - Daemon and tooling that enable snap packages Details Qualys discovered that snapd incorrectly handled certain operations in the snap's private /tmp directory. If systemd-tmpfiles is enabled to automatically clean up this directory, a local attacker could possibly use this issue to re-create the deleted directory, resulting in privilege escalation. Qualys discovered that snapd incorrectly handled certain operations in the snap's private /tmp directory. If systemd-tmpfiles is enabled to automatically clean up this directory, a local attacker could possibly use this issue to re-create the deleted directory, resulting in privilege escalation. Update instructions After a standard system update you need to reboot your computer to make all the necessary changes. Learn more about how to get the fixes. The problem can be corrected by updating your system to the following package versions: Ubuntu Release Package Version 25.10 questing snapd – 2.73+ubuntu25.10.1 24.04 LTS noble snapd – 2.73+ubuntu24.04.1 22.04 LTS jammy snapd – 2.73+ubuntu22.04.1 20.04 LTS focal snapd – 2.67.1+20.04ubuntu1~esm1 Ubuntu Pro Fix available with Ubuntu Pro . 18.04 LTS bionic snapd – 2.61.4ubuntu0.18.04.1+esm2 Ubuntu Pro Fix available with Ubuntu Pro . 16.04 LTS xenial snapd – 2.61.4ubuntu0.16.04.1+esm2 Ubuntu Pro Fix available with Ubuntu Pro . Reduce your security exposure Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines. Get Ubuntu Pro References CVE-2026-3888 CVE-2026-3888

Share this article