CVE-2023-31439

Published
View on NVD ↗
CVSS v3
5.3
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS

Description

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

The systemd System and Service Manager
GitHubGitHub
16.4K
Three Vulnerabilities in Journald Forward Secure Log Sealing
GitHubGitHub
1