A snapd security update has been released for Debian GNU/Linux 9 Extended LTS to address a race condition.
ELA-930-1 snapd security update
Package : snapd
Version : 2.21-2+deb9u3 (stretch)
Related CVEs :
CVE-2022-3328
The Qualys Research Team discovered that a race condition existed in the snapd
snap-confine binary when preparing the private /tmp mount for a snap. A local
attacker could possibly use this issue to escalate privileges and execute
arbitrary code.