Canonical · Snapd · CVE-2026-15226
**Name of the Vulnerable Software and Affected Versions**
Canonical snapd (affected versions not specified)
**Description**
A sandbox confinement bypass exists in the internal execution environment compiler (snap-confine). The default seccomp security templates, which are used to restrict system calls, fail to filter or reject operations that create or manipulate file execution flags with set-user-ID attributes. This allows an application in a strictly confined environment to compile or drop binaries and apply setuid properties to them. A malicious process can then execute these binaries to bypass sandboxing assumptions, remove restriction policies, or perform privileged actions within the container namespace.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.