{"id":"USN-8758-1","summary":"dracut vulnerability","details":"It was discovered that dracut did not properly shell-quote messages\nwritten by the die() function to the emergency hook directory. An\nattacker on the adjacent network controlling a rogue DHCP server could\nuse this issue to inject commands that execute as root during\nboot-failure handling. (CVE-2026-15816)","modified":"2026-09-15T03:27:15.146635962Z","published":"2026-09-14T20:28:17Z","related":["UBUNTU-CVE-2026-15816"],"upstream":["CVE-2026-15816","UBUNTU-CVE-2026-15816"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-8758-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-15816"},{"type":"REPORT","url":"https://bugs.launchpad.net/bugs/2166887"}],"affected":[{"package":{"name":"dracut","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"110-11ubuntu0.1"}]}],"versions":["108-3ubuntu3","108-8ubuntu1","109-5ubuntu1","109-7ubuntu1","109-9ubuntu1","109-11ubuntu1","110-1ubuntu2","110-3ubuntu1","110-5","110-7","110-10","110-11"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"dracut","binary_version":"110-11ubuntu0.1"},{"binary_name":"dracut-core","binary_version":"110-11ubuntu0.1"},{"binary_name":"dracut-install","binary_version":"110-11ubuntu0.1"},{"binary_version":"110-11ubuntu0.1","binary_name":"dracut-network"},{"binary_name":"dracut-test","binary_version":"110-11ubuntu0.1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8758-1.json","cves_map":{"cves":[{"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-15816"}],"ecosystem":"Ubuntu:26.04:LTS"}}}],"schema_version":"1.9.0"}