❌

Normal view

snap-confine + systemd-tmpfiles = root (CVE-2026-3888)

19 March 2026 at 14:31

Posted by Qualys Security Advisory via Fulldisclosure on Mar 19

Qualys Security Advisory

Good things come to those who wait:
snap-confine + systemd-tmpfiles = root (CVE-2026-3888)

========================================================================
Contents
========================================================================

Summary
Case study: Ubuntu Desktop 24.04
- Analysis
- Exploitation
Case study: Ubuntu Desktop 25.10
- Overview
- Exploitation
A quick note on the uutils coreutils (the...

APPLE-SA-03-17-2026-1 Background Security Improvements for iOS 26.3.1, iPadOS 26.3.1, macOS 26.3.1, and macOS 26.3.2

19 March 2026 at 14:31

Posted by Apple Product Security via Fulldisclosure on Mar 19

APPLE-SA-03-17-2026-1 Background Security Improvements for iOS 26.3.1,
iPadOS 26.3.1, macOS 26.3.1, and macOS 26.3.2

Background Security Improvements for iOS 26.3.1, iPadOS 26.3.1, macOS
26.3.1, and macOS 26.3.2 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/126604.

Apple maintains a Security Releases page at
https://support.apple.com/100100 which lists recent
software...

SEC Consult SA-20260318-0 :: Multiple Privilege Escalation Vulnerabilities in Arturia Software Center MacOS

19 March 2026 at 14:30

Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Mar 19

SEC Consult Vulnerability Lab Security Advisory < 20260318-0 >
=======================================================================
title: Multiple Privilege Escalation Vulnerabilities
product: Arturia Software Center MacOS
vulnerable version: 2.12.0.3157
fixed version: -
CVE number: CVE-2026-24062, CVE-2026-24063
Β  Β  Β  Β  Β  Β  Β impact: high
homepage:...

SEC Consult SA-20260317-0 :: Multiple vulnerabilities in PEGA Infinity platform

19 March 2026 at 14:30

Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Mar 19

SEC Consult Vulnerability Lab Security Advisory < 20260317-0 >
=======================================================================
title: Multiple vulnerabilities
Β  Β  Β  Β  Β  product: PEGA Infinity platform
vulnerable version: CVE-2025-62181: Pega Platform versions 7.1.0 through Infinity 25.1.0
Β  Β  Β  Β  Β  Β  Β  Β  Β  Β  CVE-2025-9559: Pega Platform versions 8.7.5 to Infinity 24.2.2
Β  Β  Β  fixed version:...
❌