Impact
The flaw in systemd-homed arises from a missing verification of the home‑record signature during user authentication. This oversight allows a local, logged‑in homed‑managed user to add arbitrary system groups to their own account, effectively elevating privilege. The issue is classified as a broken access control weakness (CWE‑269) and a missing signature check (CWE‑347).
Affected Systems
The vulnerability affects all deployments of systemd that include the homed component. Any system running systemd-homed is potentially susceptible, regardless of the active operating system distribution, because no specific version numbers are currently disclosed.
Risk and Exploitability
The CVSS score of 6.7 indicates a moderate severity, and the EPSS score is not available. The flaw is not listed in the CISA KEV catalog. The attack vector is local; an attacker must be logged in to the target machine to exploit this issue. Successful exploitation would grant the user additional system group memberships, increasing their privileges on the system.
OpenCVE Enrichment
Ubuntu USN