VOOZH about

URL: https://www.phoronix.com/news/Ubuntu-Snapd-High-Vulnerability

⇱ Ubuntu's Snap Affected By Local Privilege Escalation Vulnerability - Phoronix


πŸ‘ Phoronix

Ubuntu's Snap Affected By Local Privilege Escalation Vulnerability

Written by Michael Larabel in Ubuntu on 18 March 2026 at 10:44 AM EDT. 28 Comments
Last week it was security issues with AppArmor to worry about on Ubuntu Linux while this week a "high" rated vulnerability for Ubuntu's Snap daemon has been revealed.

CVE-2026-3888 was made public yesterday as a local privilege escalation affecting Snapd on ubuntu. Those with local user access can obtain root privileges by recreating Snap's private /tmp directory when systemd-tmpfiles is enabled. The CVE report notes:
"Qualys discovered that snapd incorrectly handled certain operations in the snap’s private /tmp directory. If systemd-tmpfiles is enabled to automatically clean up this directory, a local attacker could possibly use this issue to re-create the deleted directory, resulting in privilege escalation."

The CVSS3 severity score puts it into the 7.8 "high" category.

πŸ‘ Snapd vulnerability high


The announcement of this local privilege escalation has led to updates being applied to Ubuntu 25.10 and all Ubuntu LTS releases back to Ubuntu 16.04 LTS. Ubuntu 24.04 LTS and Ubuntu 25.10 are affected out-of-the-box with the default settings while Ubuntu 22.04 LTS and older are only affected in non-default configurations.

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.