LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-3888

canonical · ubuntu linux

Published
CVSS7.8
Severityhigh
WeaknessCWE-268
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Description

Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's private /tmp directory when systemd-tmpfiles is configured to automatically clean up this directory. This issue affects Ubuntu 16.04 LTS, 18.04 LTS, 20.04 LTS, 22.04 LTS, and 24.04 LTS.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-3888

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-3888.