Local Root Execution Vulnerability in udev from Systemd
CVE-2026-40225
6.4MEDIUM
What is CVE-2026-40225?
A vulnerability exists in the udev component of Systemd prior to version 260, where local root execution can be exploited through malicious hardware devices. This flaw arises from unsanitized kernel output, allowing threat actors to gain elevated privileges on affected systems. It is critical for users to apply updates and implement security measures to mitigate this risk.
Affected Version(s)
systemd 0 < 260
