2.9
/ 10
LOW
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Description
In systemd 259, systemd-journald can send ANSI escape sequences to the terminals of arbitrary users when a "logger -p emerg" command is executed, if ForwardToWall=yes is set.
Basic Information
ID
CVE-2026-40228
Source
mitre
Published
Apr 10, 2026 at 15:48
Modified
Apr 10, 2026 at 17:27
Affected Product
Vendor
systemd
Product
systemd
Version
259
Affected Versions
systemd systemd 259