CVE-2023-31437: Medium severity systemd vulnerability
DISPUTED An issue was discovered in systemd 253. An attacker can modify a sealed log file such that, in some views, not all existing and sealed log messages are displayed. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-31437?
CVE-2023-31437 is a disputed issue in systemd version 253 where an attacker can modify a sealed log file resulting in the potential loss of display for some existing and sealed log messages.
Is CVE-2023-31437 a security vulnerability?
The vendor has disputed that CVE-2023-31437 is a security vulnerability.
What is the severity rating of CVE-2023-31437?
CVE-2023-31437 has a severity rating of medium with a CVSS score of 5.3.
How can an attacker exploit CVE-2023-31437?
An attacker can exploit CVE-2023-31437 by modifying a sealed log file to manipulate the display of log messages.
Are there any fixes or patches available for CVE-2023-31437?
There are no available fixes or patches for CVE-2023-31437 as the vendor has disputed it as a security vulnerability.