libsystemd.so is affected by memory leak. The button_open
function in login/logind-button.c
does not properly handle the execution of the udevadm trigger command, allowing an attacker to read memory and application crash.
lists.opensuse.org/opensuse-security-announce/2020-02/msg00014.html
github.com/systemd/systemd/commit/b2774a3ae692113e1f47a336a6c09bac9cfb49ad
lists.fedoraproject.org/archives/list/[email protected]/message/HZPCOMW5X6IZZXASCDD2CNW2DLF3YADC/
security.netapp.com/advisory/ntap-20200210-0002/
usn.ubuntu.com/4269-1/