Known vulnerabilities in systemd

Software: systemd
Software CPE: cpe:2.3:o:freedesktop_org:systemd:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 38
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting systemd systemd is affected by 38 known vulnerabilities: 4 high, 8 medium, 26 low Critical High Medium Low

Vulnerabilities (38)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU124627 - Reachable Assertion
CVE-2026-29111
CWE-617 Low
No
No
257.11, 258.5, 259.2 26.03.2026 SB2026032630
SB2026033133
SB2026033134
and 11 more
#VU111062 - Permissions, Privileges, and Access Controls
CVE-2025-4598
CWE-264 Low
Available
No
- 11.06.2025 SB2025061128
SB2025061134
SB2025061152
and 19 more
#VU85658 - Insufficient Verification of Data Authenticity
CVE-2023-7008
CWE-345 Medium
No
No
- 22.01.2024 SB2024012238
SB2024012239
SB2024012240
and 38 more
#VU74146 - Improper Privilege Management
CVE-2023-26604
CWE-269 Low
No
No
247 28.03.2023 SB2023032869
SB2023032871
SB2023040540
and 56 more
#VU72887 - Resource exhaustion
CVE-2022-45873
CWE-400 Low
No
No
250.9, 251.9 06.03.2023 SB2023030658
SB2023030659
SB2023030716
and 7 more
#VU70461 - Improper Privilege Management
CVE-2022-4415
CWE-269 Low
No
No
247.13, 248.12, 249.14, 250.9, 251.10, 252.4 21.12.2022 SB2022122140
SB2022122735
SB2022122816
and 70 more
#VU69807 - Off-by-one Error
CVE-2022-3821
CWE-193 Low
No
No
252 01.12.2022 SB2022120139
SB2022120141
SB2022120143
and 50 more
#VU66757 - Use After Free
CVE-2022-2526
CWE-416 Medium
No
No
240 25.08.2022 SB2022082509
SB2022082511
SB2022082531
and 48 more
#VU59358 - Uncontrolled Recursion
CVE-2021-3997
CWE-674 Low
No
No
250.2 10.01.2022 SB2022011041
SB2022011194
SB2022011325
and 10 more
#VU55034 - Uncontrolled Memory Allocation
CVE-2021-33910
CWE-789 Low
Available
No
246.15, 247.8, 248.5, 249.1 20.07.2021 SB2021072031
SB2021072032
SB2021072206
and 31 more
#VU52596 - Predictable from Observable State
CVE-2020-13529
CWE-341 Low
No
No
248 26.04.2021 SB2021042643
SB2021071430
SB2021072032
and 7 more
#VU29539 - Improper input validation
CVE-2020-13776
CWE-20 Low
No
No
245.7 06.07.2020 SB2020060340
SB2021052027
SB2021062314
and 10 more
#VU34755 - Improper input validation
CVE-2012-1101
CWE-20 Low
No
No
- 11.03.2020 SB2020031150
#VU25332 - Use After Free
CVE-2020-1712
CWE-416 Low
No
No
245 rc1 13.02.2020 SB2020021326
SB2020021327
SB2020021328
and 5 more
#VU24717 - Permissions, Privileges, and Access Controls
CVE-2019-3844
CWE-264 Low
No
No
242 29.01.2020 SB2019051303
SB2020042841
#VU24716 - Missing release of memory after effective lifetime
CVE-2019-20386
CWE-401 Low
No
No
243 29.01.2020 SB2019090402
SB2020021327
SB2020093020
and 5 more
#VU23460 - Configuration
CVE-2019-14899
CWE-16 Medium
No
No
245 rc1 09.12.2019 SB2019120905
#VU20837 - Incorrect Default Permissions
CVE-2019-15718
CWE-276 Low
No
No
243 04.09.2019 SB2019090402
SB2019090423
SB2019100302
and 5 more
#VU35894 - Credentials Management
CVE-2018-20839
CWE-255 High
No
No
- 17.05.2019 SB2019051711
#VU18435 - Permissions, Privileges, and Access Controls
CVE-2019-3843
CWE-264 Low
No
No
242 13.05.2019 SB2019051303
SB2020042841
SB2019042609


Showing elements 1 - 20 out of 38