CVE-2020-13776 - CVE House
Back to Database
Status published Unknown CVE-2020-13776

systemd through v245 mishandles numerical usernames such as ones composed...

Vulnerability Description

systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits, as demonstrated by use of root privileges when privileges of the 0x0 user account were intended. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000082.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-13776

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

systemd project

View all reports →

Affected Software

systemd, active iq unified manager, solidfire \& hci management node, fedora
Vulnerable Versions:
0, 32

Timeline

Official Publish: June 3rd, 2020
Last Modified: June 9th, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.