Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Debian 11 haveged Critical Local Privilege Escalation Vuln DLA-4616-1

debian lts
Calendar Grey June 5, 2026
Dist Debian Esm H88
Local privilege escalation flaw in haveged for Debian 11 fixed in security update DLA-4616-1.
Dirk Mueller discovered that a flaw in the function performing a credential check on the command socket of haveged, a userspace entropy daemon, may result in local privilege escala...

Summary

Dirk Mueller discovered that a flaw in the function performing a
credential check on the command socket of haveged, a userspace entropy
daemon, may result in local privilege escalation.


For Debian 11 bullseye, this problem has been fixed in version
1.9.14-1+deb11u1.

We recommend that you upgrade your haveged packages.

For the detailed security status of haveged please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/haveged

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Severity
critical
Lowest
Low
Medium
High
Critical

Package: haveged
Version: 1.9.14-1+deb11u1
CVE ID: CVE-2026-41054

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here