Linuxsecurity Critical Privilege Escalation Vulnerabilities in SUSE Linux Micro 6.0
Article Content
- •SUSE Linux Micro 6.0 is affected by two critical vulnerabilities in systemd.
- •CVE-2026-4105 and CVE-2026-29111 pose significant risks of privilege escalation.
- •Immediate patching is recommended to mitigate these vulnerabilities.
SUSE Linux Micro 6.0 has been updated to address two critical vulnerabilities in systemd. CVE-2026-4105 allows privilege escalation due to improper access control in the RegisterMachine D-Bus method, while CVE-2026-29111 enables local unprivileged users to trigger an assert in systemd. Both vulnerabilities were published recently, with CVE-2026-4105 on March 13, 2026, and CVE-2026-29111 on March 23, 2026. The affected systems include SUSE Linux Micro 6.0 and SUSE Linux Micro Extras 6.0. The updates also include non-security fixes related to udev and libsystemd naming conventions. Security professionals are urged to apply the patches promptly to mitigate these risks. The CVSS scores for CVE-2026-4105 range from 6.7 to 7.8, indicating a high severity level. Current status shows that the vulnerabilities can be patched immediately.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track CVE-2026-29111 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
SUSE Systemd Vulnerability Leads to Local Privilege Escalation Risk A security update for systemd addresses CVE-2026-16742, a local privilege escalation vulnerability affecting SUSE and openSUSE systems. This flaw arises from missing record signature verification in `systemd-homed`, allowing unauthorized users to escalate privileges. The vulnerability has a CVSS score of 6.7…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…