CVE-2016-10156
published 2017-01-23CVE-2016-10156: A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers…
PriorityP347high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EXPLOIT
EPSS
1.22%
65.5th percentile
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | systemd | < systemd 229-1 (bookworm) | systemd 229-1 (bookworm) |
| systemd_project | systemd | — | — |
| systemd_project | systemd | >= 0 < 229-1 | 229-1 |
| systemd_project | systemd | >= 0 < 229-1 | 229-1 |
| systemd_project | systemd | >= 0 < 229-1 | 229-1 |
| systemd_project | systemd | >= 0 < 229-1 | 229-1 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4r87-5wgm-7h7m: A flaw in systemd v228 in /src/basic/fs-util
ghsa_unreviewed·2022-05-17
CVE-2016-10156 [HIGH] GHSA-4r87-5wgm-7h7m: A flaw in systemd v228 in /src/basic/fs-util
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
OSV
CVE-2016-10156: A flaw in systemd v228 in /src/basic/fs-util
osv·2017-01-23·CVSS 7.8
CVE-2016-10156 [HIGH] CVE-2016-10156: A flaw in systemd v228 in /src/basic/fs-util
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
Red Hat
systemd: systemd creates world-writable suid files allowing root privilege escalation
vendor_redhat·2017-01-24·CVSS 7.8
CVE-2016-10156 [HIGH] CWE-732 systemd: systemd creates world-writable suid files allowing root privilege escalation
systemd: systemd creates world-writable suid files allowing root privilege escalation
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
Package: systemd (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2016-10156: systemd - A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files ...
vendor_debian·2016·CVSS 7.8
CVE-2016-10156 [HIGH] CVE-2016-10156: systemd - A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files ...
A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.
Scope: local
bookworm: resolved (fixed in 229-1)
bullseye: resolved (fixed in 229-1)
forky: resolved (fixed in 229-1)
sid: resolved (fixed in 229-1)
trixie: resolved (fixed in 229-1)
No detection rules found.
http://www.securityfocus.com/bid/95790http://www.securitytracker.com/id/1037686https://bugzilla.suse.com/show_bug.cgi?id=1020601https://github.com/systemd/systemd/commit/06eeacb6fe029804f296b065b3ce91e796e1cd0ehttps://github.com/systemd/systemd/commit/ee735086f8670be1591fa9593e80dd60163a7a2fhttps://www.exploit-db.com/exploits/41171/http://www.securityfocus.com/bid/95790http://www.securitytracker.com/id/1037686https://bugzilla.suse.com/show_bug.cgi?id=1020601https://github.com/systemd/systemd/commit/06eeacb6fe029804f296b065b3ce91e796e1cd0ehttps://github.com/systemd/systemd/commit/ee735086f8670be1591fa9593e80dd60163a7a2fhttps://www.exploit-db.com/exploits/41171/
2017-01-23
Published