CVE-2026-3888

Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's private /tmp directory when systemd-tmpfiles is configured to automatically clean up this directory. This issue affects Ubuntu 16.04 LTS, 18.04 LTS, 20.04 LTS, 22.04 LTS, and 24.04 LTS.

Scoring

Severity
HIGH
CVSS base score
7.8
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS probability
0.38%
CWE
CWE-268
Published
2026-03-17
Last modified
2026-03-19

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs