Related Vulnerabilities: CVE-2018-15687  

A security issue has been found in systemd up to and including 239, where a race condition in the chown_one() function can be used to escalate privileges via a crafted symlink.

Severity High

Remote No

Type Privilege escalation

Description

A security issue has been found in systemd up to and including 239, where a race condition in the chown_one() function can be used to escalate privileges via a crafted symlink.

AVG-789 systemd 239.2-1 239.300-1 Critical Fixed FS#60609

07 Nov 2018 ASA-201811-11 AVG-789 systemd Critical multiple issues

https://bugs.chromium.org/p/project-zero/issues/detail?id=1689
https://bugs.launchpad.net/ubuntu/+source/systemd/+bug/1796692
https://github.com/systemd/systemd/pull/10517