NA

CVE-2023-31439

Published: 13/06/2023 Updated: 11/04/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

systemd project systemd 253

Github Repositories

Three Vulnerabilities in Journald Forward Secure Log Sealing

Three Vulnerabilities in Journald Forward Secure Log Sealing This repository contains the accompanying code for the publication "Secure Logging in between Theory and Practice: Security Analysis of the Implementation of Forward Secure Log Sealing in Journald" (in this repository or on eprint) For details on the individual vulnerabilities and theoretical background we