USN-8119-1: systemd vulnerabilities

Publication date

23 March 2026

Overview

Several security issues were fixed in systemd.


Packages

  • systemd - system and service manager

Details

It was discovered that systemd incorrectly handled certain cgroup paths.
A local attacker could possibly use this issue to cause systemd to crash,
resulting in a denial of service. (CVE-2026-29111)

It was discovered that the systemd udev component incorrectly handled
certain fields received from the kernel. An attacker with a malicious
device could possibly use this issue to execute arbitrary code as an
administrator (root).

It was discovered that systemd incorrectly handled certain cgroup paths.
A local attacker could possibly use this issue to cause systemd to crash,
resulting in a denial of service. (CVE-2026-29111)

It was discovered that the systemd udev component incorrectly handled
certain fields received from the kernel. An attacker with a malicious
device could possibly use this issue to execute arbitrary code as an
administrator (root).

Update instructions

After a standard system update you need to reboot your computer to make all the necessary changes.

Learn more about how to get the fixes.

The problem can be corrected by updating your system to the following package versions:


Reduce your security exposure

Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.


Have additional questions?

Talk to a member of the team ›