CVE-2023-31438

Published
View on NVD ↗
CVSS v3
5.3
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS

Description

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

The systemd System and Service Manager
GitHubGitHub
16.4K
Three Vulnerabilities in Journald Forward Secure Log Sealing
GitHubGitHub
1