Systemd Nspawn Vulnerability in Specific Versions
CVE-2026-40226
6.4MEDIUM
What is CVE-2026-40226?
A vulnerability exists in the nspawn component of systemd versions 233 through 259, where a specially crafted optional configuration file can trigger an escape-to-host action. This flaw may allow malicious configurations to bypass container isolation, potentially leading to unauthorized access to the host system.
Affected Version(s)
systemd 233 < 260
