{"id":"UBUNTU-CVE-2026-6893","details":"A flaw was found in dracut. A remote attacker on the adjacent network can exploit this vulnerability by providing specially crafted DHCP (Dynamic Host Configuration Protocol) options, such as a malicious hostname, to a system using dracut's legacy DHCP path. These options are improperly handled and written into temporary shell scripts without proper escaping, leading to command injection. This allows the attacker to achieve root code execution within the initramfs, potentially compromising the system's boot and network behavior.","modified":"2026-09-15T03:15:04.409103081Z","published":"2026-06-10T20:17:00Z","upstream":["CVE-2026-6893"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-6893"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-6893"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2459963"}],"affected":[{"package":{"name":"dracut","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["043-2","043-4","044+3-1","044+3-2","044+3-3"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"044+3-3"},{"binary_name":"dracut-config-generic","binary_version":"044+3-3"},{"binary_version":"044+3-3","binary_name":"dracut-config-rescue"},{"binary_version":"044+3-3","binary_name":"dracut-core"},{"binary_name":"dracut-network","binary_version":"044+3-3"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["045+132-1","047-2"],"ecosystem_specific":{"binaries":[{"binary_version":"047-2","binary_name":"dracut"},{"binary_version":"047-2","binary_name":"dracut-config-generic"},{"binary_name":"dracut-config-rescue","binary_version":"047-2"},{"binary_version":"047-2","binary_name":"dracut-core"},{"binary_name":"dracut-network","binary_version":"047-2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:20.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["048+80-2"],"ecosystem_specific":{"binaries":[{"binary_version":"048+80-2","binary_name":"dracut"},{"binary_version":"048+80-2","binary_name":"dracut-config-generic"},{"binary_name":"dracut-config-rescue","binary_version":"048+80-2"},{"binary_name":"dracut-core","binary_version":"048+80-2"},{"binary_version":"048+80-2","binary_name":"dracut-network"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["051-1"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"051-1"},{"binary_name":"dracut-config-generic","binary_version":"051-1"},{"binary_name":"dracut-config-rescue","binary_version":"051-1"},{"binary_version":"051-1","binary_name":"dracut-core"},{"binary_name":"dracut-live","binary_version":"051-1"},{"binary_name":"dracut-network","binary_version":"051-1"},{"binary_version":"051-1","binary_name":"dracut-squash"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["059-4ubuntu2","060+5-1ubuntu1","060+5-1ubuntu2","060+5-1ubuntu3","060+5-1ubuntu3.1","060+5-1ubuntu3.2","060+5-1ubuntu3.3"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"060+5-1ubuntu3.3"},{"binary_name":"dracut-config-generic","binary_version":"060+5-1ubuntu3.3"},{"binary_version":"060+5-1ubuntu3.3","binary_name":"dracut-config-rescue"},{"binary_name":"dracut-core","binary_version":"060+5-1ubuntu3.3"},{"binary_name":"dracut-install","binary_version":"060+5-1ubuntu3.3"},{"binary_version":"060+5-1ubuntu3.3","binary_name":"dracut-live"},{"binary_name":"dracut-network","binary_version":"060+5-1ubuntu3.3"},{"binary_name":"dracut-squash","binary_version":"060+5-1ubuntu3.3"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["106-2ubuntu5","107-1ubuntu1","107-1ubuntu3","107-1ubuntu5","108-1ubuntu1","108-2ubuntu1","108-3ubuntu2","108-3ubuntu3"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"108-3ubuntu3"},{"binary_name":"dracut-core","binary_version":"108-3ubuntu3"},{"binary_name":"dracut-install","binary_version":"108-3ubuntu3"},{"binary_version":"108-3ubuntu3","binary_name":"dracut-live"},{"binary_name":"dracut-network","binary_version":"108-3ubuntu3"},{"binary_name":"dracut-squash","binary_version":"108-3ubuntu3"},{"binary_version":"108-3ubuntu3","binary_name":"dracut-test"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["108-3ubuntu3","108-8ubuntu1","109-5ubuntu1","109-7ubuntu1","109-9ubuntu1","109-11ubuntu1","110-1ubuntu2","110-3ubuntu1","110-5","110-7","110-10","110-11","110-11ubuntu0.1"],"ecosystem_specific":{"binaries":[{"binary_version":"110-11ubuntu0.1","binary_name":"dracut"},{"binary_name":"dracut-core","binary_version":"110-11ubuntu0.1"},{"binary_name":"dracut-install","binary_version":"110-11ubuntu0.1"},{"binary_name":"dracut-network","binary_version":"110-11ubuntu0.1"},{"binary_version":"110-11ubuntu0.1","binary_name":"dracut-test"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-6893.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}