[WID-SEC-2026-2469] snapd: Mehrere Schwachstellen CVSS Base Score 8.4 (hoch) CVSS Temporal Score 7.3 (hoch) Remoteangriff nein Datum 21.07.2026 Stand 22.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Produktbeschreibung Ubuntu Linux ist die Linux Distribution des Herstellers Canonical. Snap (auch bekannt als Snappy) ist ein Softwareverteilungssystem und eine Paketverwaltung für Linux. Produkte 21.07.2026 Ubuntu Linux Focal snapd <2.67.1+20.04ubuntu1~esm3 Ubuntu Linux Bionic snapd <2.61.4ubuntu0.18.04.1+esm4 Ubuntu Linux Xenial snapd <2.61.4ubuntu0.16.04.1+esm4 Ubuntu Linux Jammy snapd <2.76+ubuntu22.04.1 Ubuntu Linux Noble snapd <2.76+ubuntu24.04.1 Ubuntu Linux Resolute snapd <2.76+ubuntu26.04.3 Canonical Snap <2.76.1 Angriff Angriff Ein lokaler Angreifer kann mehrere Schwachstellen in Ubuntu Linux und Canonical Snap ausnutzen, um Informationen offenzulegen, Root-Rechte zu erlangen und Sicherheitsmaßnahmen zu umgehen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in Canonical's snapd package (CVE not specified) allow a local attacker to disclose information, gain root privileges, and bypass security measures, with a CVSS base score of 8.4 (High). Affected versions include Ubuntu Focal snapd <2.67.1+20.04ubuntu1~esm3, Bionic snapd <2.61.4ubuntu0.18.04.1+esm4, Xenial snapd <2.61.4ubuntu0.16.04.1+esm4, Jammy snapd <2.76+ubuntu22.04.1, Noble snapd <2.76+ubuntu24.04.1, Resolute snapd <2.76+ubuntu26.04.3, and Canonical Snap <2.76.1. A mitigation is available, and users should apply the relevant updates for their distribution.