{"id":"CVE-2023-31439","details":"An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent \"a reply denying that any of the finding was a security vulnerability.\"","modified":"2026-08-12T03:51:46.132884475Z","published":"2023-06-13T00:00:00Z","related":["CGA-f46p-m3j4-9g68"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/31xxx/CVE-2023-31439.json","cna_assigner":"mitre","isDisputed":true},"references":[{"type":"WEB","url":"https://github.com/kastel-security/Journald/blob/main/journald-publication.pdf"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/31xxx/CVE-2023-31439.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-31439"},{"type":"FIX","url":"https://github.com/systemd/systemd/pull/28885"},{"type":"PACKAGE","url":"https://github.com/kastel-security/Journald"},{"type":"PACKAGE","url":"https://github.com/systemd/systemd/releases"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/systemd/systemd","events":[{"introduced":"477fdc5afed0457c43d01f3d7ace7209f81d3995"},{"last_affected":"477fdc5afed0457c43d01f3d7ace7209f81d3995"}],"database_specific":{"cpe":"cpe:2.3:a:systemd_project:systemd:253:-:*:*:*:*:*:*","extracted_events":[{"introduced":"253-NA"},{"last_affected":"253-NA"}],"source":"CPE_STRING"}}],"versions":["253-NA","v253"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-31439.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/systemd/systemd-stable","events":[{"introduced":"477fdc5afed0457c43d01f3d7ace7209f81d3995"},{"last_affected":"477fdc5afed0457c43d01f3d7ace7209f81d3995"}],"database_specific":{"cpe":"cpe:2.3:a:systemd_project:systemd:253:-:*:*:*:*:*:*","extracted_events":[{"introduced":"253-NA"},{"last_affected":"253-NA"}],"source":"CPE_STRING"}}],"versions":["253-NA","v253"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-31439.json"}}],"schema_version":"1.9.0"}