Search CVE reports


Toggle filters

1 – 10 of 30 results


CVE-2026-13595

Medium priority
Needs evaluation

A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a parent partition entry in a dynamically allocated array....

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-53615

Medium priority
Needs evaluation

[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-53614

Medium priority
Needs evaluation

[Local Privilege Escalation via LIBMOUNT_FORCE_MOUNT2 Environment Variable - nosuid/noexec Bypass in SUID mount(8)]

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-53613

Medium priority
Needs evaluation

[Local Privilege Escalation via TOCTOU in mount(8) - Target Path Redirection]

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-53612

Medium priority
Needs evaluation

[Local Privilege Escalation via TOCTOU in mount(8) hook_owner.c chmod/chown]

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3184

Medium priority
Vulnerable

A flaw was found in util-linux. Improper hostname canonicalization in the `login(1)` utility, when invoked with the `-h` option, can modify the supplied remote hostname before setting `PAM_RHOST`. A remote attacker could exploit...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Vulnerable Not affected Not affected Not affected Not affected
Show less packages

CVE-2026-27456

Medium priority
Vulnerable

util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vulnerability has been identified in the SUID binary /usr/bin/mount from util-linux. The mount binary, when...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2025-14104

Medium priority
Needs evaluation

A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing 256-byte usernames, specifically within the `setpwnam()` function, affecting SUID (Set User ID) login-utils utilities writing to the...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Not affected Not affected Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2024-28085

Medium priority

Some fixes available 8 of 11

wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Fixed Fixed Fixed Fixed Needs evaluation
Show less packages

CVE-2020-21583

Low priority
Vulnerable

An issue was discovered in hwclock.13-v2.27 allows attackers to gain escalated privlidges or execute arbitrary commands via the path parameter when setting the date.

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Not affected Not affected Not affected Not affected Not affected
Show less packages