Vulnerabilities (CVE)

Filtered by vendor Redhat Subscribe
Filtered by product Discovery
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-1712 2 Redhat, Systemd Project 6 Ceph Storage, Discovery, Enterprise Linux and 3 more 2022-06-30 4.6 MEDIUM 7.8 HIGH
A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while handling dbus messages. A local unprivileged attacker can abuse this flaw to crash systemd services or potentially execute code and elevate their privileges, by sending specially crafted dbus messages.