Known Vulnerabilities for Snapd by Canonical
Listed below are 10 of the newest known vulnerabilities associated with "Snapd" by "Canonical".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-15226 json | A sandbox confinement bypass vulnerability exists in Canonical snapd within its internal execution environment compiler (snap... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-8933 json | A local privilege escalation vulnerability exists in snap-confine, a set-capabilities core component used internally by Canon... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2024-5300 json | An access control bypass and information disclosure vulnerability exists in the base AppArmor security profile configuration ... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2023-1523 json | Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal which co... | 10 - CRITICAL | 2023-09-01 | 2023-09-08 |
| CVE-2022-3328 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7 - HIGH | 2024-01-08 | 2024-01-12 |
| CVE-2021-44731 json | A race condition existed in the snapd 2.54.2 snap-confine binary when preparing a private mount namespace for a snap. This co... | 7.8 - HIGH | 2022-02-17 | 2023-11-07 |
| CVE-2021-44730 json | snapd 2.54.2 did not properly validate the location of the snap-confine binary. A local attacker who can hardlink this binary... | 8.8 - HIGH | 2022-02-17 | 2023-11-07 |
| CVE-2021-4120 json | snapd 2.54.2 fails to perform sufficient validation of snap content interface and layout paths, resulting in the ability for ... | 7.8 - HIGH | 2022-02-17 | 2023-11-07 |
| CVE-2021-3155 json | snapd 2.54.2 and earlier created ~/snap directories in user home directories without specifying owner-only permissions. This ... | 5.5 - MEDIUM | 2022-02-17 | 2022-02-25 |
| CVE-2020-11933 json | cloud-init as managed by snapd on Ubuntu Core 16 and Ubuntu Core 18 devices was run without restrictions on every boot, which... | 6.8 - MEDIUM | 2020-07-29 | 2021-11-04 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Canonical | Snapd | 2.39 | |||
| Application | Canonical | Snapd | 2.38 | |||
| Application | Canonical | Snapd | 2.37.4 | |||
| Application | Canonical | Snapd | 2.37.3 | |||
| Application | Canonical | Snapd | 2.37.2 | |||
| Application | Canonical | Snapd | 2.37.1 | |||
| Application | Canonical | Snapd | 2.37 | |||
| Application | Canonical | Snapd | 2.36.3 | |||
| Application | Canonical | Snapd | 2.36.2 | |||
| Application | Canonical | Snapd | 2.36.1 | |||
| Application | Canonical | Snapd | 2.36 | |||
| Application | Canonical | Snapd | 2.35.5 | |||
| Application | Canonical | Snapd | 2.35.4 | |||
| Application | Canonical | Snapd | 2.35.3 | |||
| Application | Canonical | Snapd | 2.35.2 | |||
| Application | Canonical | Snapd | 2.35.1 | |||
| Application | Canonical | Snapd | 2.35 | |||
| Application | Canonical | Snapd | 2.34.3 | |||
| Application | Canonical | Snapd | 2.34.2 | |||
| Application | Canonical | Snapd | 2.34.1 |