PoC Released for Linux Privilege Escalation Flaw in udisksd and libblockdev

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

PoC Released for Linux Privilege Escalation Flaw in udisksd and libblockdev

Post by Shane1145 »

Security researchers disclosed a critical local privilege escalation (LPE) vulnerability affecting Fedora, SUSE, and other major Linux distributions.

The flaw, tracked as CVE-2025-6019, resides in the interaction between the udisksd daemon and its backend library, libblockdev.

A proof-of-concept (PoC) exploit has been released, demonstrating how a user in the allow_active group can escalate privileges to root with minimal effort in certain misconfigured environments.

https://gbhackers.com/poc-released-for- ... tion-flaw/
Post Reply