CNNVD-202506-2580 Information

CNNVD ID

CNNVD-202506-2580

CVE-2025-6019

  • CNNVD Published: 2025-06-19

Description (Chinese)

Storaged libblockdev是Storaged开源的一个用于操纵块设备的库。 Storaged libblockdev存在安全漏洞,该漏洞源于与udisks守护进程交互方式不当,可能导致本地权限提升。

Description (English)

Storaged libblockdev is an open source of Storaged’s library for manipulating block equipment. Storaged libblockdev had a security loophole, which stemmed from an inappropriate interaction with the udisks daemon, which could lead to an increase in local authority.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Storaged

Published

2025-06-19

Last Modified

2026-02-24

References

http://www.openwall.com/lists/oss-security/2025/06/17/5 http://www.openwall.com/lists/oss-security/2025/06/17/6 http://www.openwall.com/lists/oss-security/2025/06/18/1 https://access.redhat.com/security/cve/CVE-2025-6019 https://bugzilla.redhat.com/show_bug.cgi?id=2370051 https://lists.debian.org/debian-lts-announce/2025/06/msg00018.html

Patch

https://github.com/storaged-project/libblockdev/releases

Share on: