{"id":"USN-8828-1","summary":"dracut vulnerabilities","details":"It was discovered that dracut created initramfs images with overly\npermissive permissions under certain circumstances. A local attacker could\npossibly use this issue to obtain sensitive information. This issue only\naffected Ubuntu 16.04 LTS. (CVE-2016-8637)\n\nIt was discovered that dracut did not properly sanitize DHCP options\nbefore writing them to shell scripts under certain circumstances. A remote\nattacker controlling a DHCP server on the local network could possibly use\nthis issue to execute arbitrary code as root during system boot. This issue\nonly affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS,\nUbuntu 22.04 LTS, and Ubuntu 24.04 LTS. (CVE-2026-6893)\n\nIt was discovered that dracut did not properly quote error messages written\nto shell scripts under certain circumstances. A remote attacker controlling\na DHCP server on the local network could possibly use this issue to execute\narbitrary code as root during system boot. This issue only affected Ubuntu\n16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu\n24.04 LTS. (CVE-2026-15816)\n\nIt was discovered that dracut did not properly sanitize network\nconfiguration data before writing it to a temporary shell script under\ncertain circumstances. A remote attacker controlling DHCP on the local\nnetwork could possibly use this issue to execute arbitrary code as root\nduring system boot. This issue only affected Ubuntu 22.04 LTS.\n(CVE-2026-16445)","modified":"2026-09-28T22:57:43.497701288Z","published":"2026-09-28T13:33:37Z","related":["UBUNTU-CVE-2016-8637","UBUNTU-CVE-2026-15816","UBUNTU-CVE-2026-16445","UBUNTU-CVE-2026-6893"],"upstream":["CVE-2016-8637","CVE-2026-15816","CVE-2026-16445","CVE-2026-6893","UBUNTU-CVE-2016-8637","UBUNTU-CVE-2026-15816","UBUNTU-CVE-2026-16445","UBUNTU-CVE-2026-6893"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-8828-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2016-8637"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-6893"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-15816"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-16445"}],"affected":[{"package":{"name":"dracut","ecosystem":"Ubuntu:Pro:16.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=esm-apps-legacy%2Fxenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"044+3-3ubuntu0.1~esm1"}]}],"versions":["043-2","043-4","044+3-1","044+3-2","044+3-3"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"044+3-3ubuntu0.1~esm1"},{"binary_version":"044+3-3ubuntu0.1~esm1","binary_name":"dracut-config-generic"},{"binary_name":"dracut-config-rescue","binary_version":"044+3-3ubuntu0.1~esm1"},{"binary_name":"dracut-core","binary_version":"044+3-3ubuntu0.1~esm1"},{"binary_version":"044+3-3ubuntu0.1~esm1","binary_name":"dracut-network"}],"availability":"Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro"},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:Pro:16.04:LTS","cves":[{"severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2016-8637"},{"severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-6893"},{"id":"CVE-2026-15816","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:Pro:18.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=esm-apps%2Fbionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"047-2ubuntu0.1~esm1"}]}],"versions":["045+132-1","047-2"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"047-2ubuntu0.1~esm1"},{"binary_version":"047-2ubuntu0.1~esm1","binary_name":"dracut-config-generic"},{"binary_name":"dracut-config-rescue","binary_version":"047-2ubuntu0.1~esm1"},{"binary_version":"047-2ubuntu0.1~esm1","binary_name":"dracut-core"},{"binary_name":"dracut-network","binary_version":"047-2ubuntu0.1~esm1"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json","cves_map":{"ecosystem":"Ubuntu:Pro:18.04:LTS","cves":[{"id":"CVE-2026-6893","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-15816","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}]}}},{"package":{"name":"dracut","ecosystem":"Ubuntu:Pro:20.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=esm-apps%2Ffocal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"048+80-2ubuntu0.1~esm1"}]}],"versions":["048+80-2"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"048+80-2ubuntu0.1~esm1"},{"binary_version":"048+80-2ubuntu0.1~esm1","binary_name":"dracut-config-generic"},{"binary_version":"048+80-2ubuntu0.1~esm1","binary_name":"dracut-config-rescue"},{"binary_version":"048+80-2ubuntu0.1~esm1","binary_name":"dracut-core"},{"binary_name":"dracut-network","binary_version":"048+80-2ubuntu0.1~esm1"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:Pro:20.04:LTS","cves":[{"id":"CVE-2026-6893","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-15816","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"score":"medium","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:Pro:22.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=esm-apps%2Fjammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"051-1ubuntu0.1~esm1"}]}],"versions":["051-1"],"ecosystem_specific":{"binaries":[{"binary_name":"dracut","binary_version":"051-1ubuntu0.1~esm1"},{"binary_name":"dracut-config-generic","binary_version":"051-1ubuntu0.1~esm1"},{"binary_name":"dracut-config-rescue","binary_version":"051-1ubuntu0.1~esm1"},{"binary_version":"051-1ubuntu0.1~esm1","binary_name":"dracut-core"},{"binary_name":"dracut-live","binary_version":"051-1ubuntu0.1~esm1"},{"binary_version":"051-1ubuntu0.1~esm1","binary_name":"dracut-network"},{"binary_version":"051-1ubuntu0.1~esm1","binary_name":"dracut-squash"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"cves_map":{"cves":[{"id":"CVE-2026-6893","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2026-15816","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-16445"}],"ecosystem":"Ubuntu:Pro:22.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"060+5-1ubuntu3.4"}]}],"versions":["059-4ubuntu2","060+5-1ubuntu1","060+5-1ubuntu2","060+5-1ubuntu3","060+5-1ubuntu3.1","060+5-1ubuntu3.2","060+5-1ubuntu3.3"],"ecosystem_specific":{"binaries":[{"binary_version":"060+5-1ubuntu3.4","binary_name":"dracut"},{"binary_name":"dracut-config-generic","binary_version":"060+5-1ubuntu3.4"},{"binary_version":"060+5-1ubuntu3.4","binary_name":"dracut-config-rescue"},{"binary_version":"060+5-1ubuntu3.4","binary_name":"dracut-core"},{"binary_name":"dracut-install","binary_version":"060+5-1ubuntu3.4"},{"binary_name":"dracut-live","binary_version":"060+5-1ubuntu3.4"},{"binary_version":"060+5-1ubuntu3.4","binary_name":"dracut-network"},{"binary_name":"dracut-squash","binary_version":"060+5-1ubuntu3.4"}],"availability":"No subscription required"},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:24.04:LTS","cves":[{"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}],"id":"CVE-2026-6893"},{"severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2026-15816"}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json"}},{"package":{"name":"dracut","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/dracut?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"110-11ubuntu0.1"}]}],"versions":["108-3ubuntu3","108-8ubuntu1","109-5ubuntu1","109-7ubuntu1","109-9ubuntu1","109-11ubuntu1","110-1ubuntu2","110-3ubuntu1","110-5","110-7","110-10","110-11"],"ecosystem_specific":{"binaries":[{"binary_version":"110-11ubuntu0.1","binary_name":"dracut"},{"binary_name":"dracut-core","binary_version":"110-11ubuntu0.1"},{"binary_version":"110-11ubuntu0.1","binary_name":"dracut-install"},{"binary_version":"110-11ubuntu0.1","binary_name":"dracut-network"},{"binary_version":"110-11ubuntu0.1","binary_name":"dracut-test"}],"availability":"No subscription required"},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:26.04:LTS","cves":[{"id":"CVE-2026-15816","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"type":"Ubuntu","score":"medium"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8828-1.json"}}],"schema_version":"1.9.0"}