CVE-2026-29111Disclosure(systemd_project / systemd)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch systemd_project systemd systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call is made with spurious data. On version v249 and older the effect is not an assert, but stack overwriting, with the attacker controlled content. From version v250 and newer this is not possible as the safety check causes an assert instead. This IPC call was added in v239, so versions older than that are not affected. Versions 260-rc1, 259.2, 258.5, and 257.11 contain patches. No known workarounds are available.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • systemd

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • Peaked 2d ago at 2 mentions (2026-03-24); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Products
systemd

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-03-24: 2Mentions · 2026-03-25: 1Mentions · 2026-03-26: 1Patch / Workaround · 2026-03-24: 1Patch / Workaround · 2026-03-25: 1Technical Details · 2026-03-24: 2Technical Details · 2026-03-25: 1Technical Details · 2026-03-26: 103-2403-2503-26
Signal classification2 categories
Disclosure
250.0%
Patch
250.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-242
Disclosure1Patch1
2026-03-251
Patch1
2026-03-261
Disclosure1
Full discourse4 posts
  • ThreatCluster@threatcluster
    Patch

    BREAKING: SUSE Linux Micro 6.0 patches critical systemd bugs CVE-2026-4105 and CVE-2026-29111, CVSS up to 7.8, enabling local privilege escalation before update. https://threatcluster.io/cluster/critical-privilege-escalation-vulnerabilities-in-suse-linux--f2f9ba51

    Post summary

    SUSE Linux Micro 6.0 has released patches for critical systemd bugs CVE-2026-4105 and CVE-2026-29111 that enable local privilege escalation, with a CVSS up to 7.8.

    0001055
    114 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-29111 Privilege Escalation Vulnerability in systemd IPC API Before Version 260-rc1 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-29111

    Post summary

    The text reports CVE‑2026‑29111 as a privilege escalation flaw in systemd IPC API prior to version 260‑rc1, with no PoC, exploit, or patch details provided.

    0001059
    4.0K followersView on X
  • ThreatCluster@threatcluster
    Patch

    BREAKING: Ubuntu ships fixes for 2 critical systemd flaws in USN-8119-1 and USN-8119-2 affecting 14.04, 16.04, 18.04, 20.04 including CVE-2026-29111 DoS and udev root code execution. https://threatcluster.io/cluster/critical-vulnerabilities-in-systemd-affecting-multiple-ubunt-ab531077

    Post summary

    The tweet announces Ubuntu’s release of patches for critical systemd flaws, describing the DoS and root code‑execution issues while not indicating exploitation or PoC details.

    0000150
    113 followersView on X
  • WindowsForum@windowsforum
    Disclosure

    🚨 Another day, another “minor” assert that turns Linux into a domino set. Even without privilege escalation, crashing systemd can wreck service supervision—fun, right? https://windowsforum.com/threads/cve-2026-29111-local-unprivileged-user-can-trigger-systemd-assert.407459/ #PatchManagement #Cve202629111 #SystemdSecurity #LinuxDenialOfService https://t.co/hG300sLiij

    Post summary

    The post announces that a local unprivileged user can cause a systemd assert, which results in a denial‑of‑service condition on Linux.

    0000034
    1.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appsystemd_projectsystemd---

Explore more