https://seclists.org/oss-sec/2025/q2/263: CVE-2025-6019: LPE from allow_active to root in libblockdev via udisks
Published Jun 17, 2025
·Updated
Affected Software
3 affected components
Linux-PAM Linux-PAM>=1.5.0<1.6.0
Debian Debian
Ubuntu Ubuntu
Frequently Asked Questions
1
What is the severity of CVE-2025-6019?
CVE-2025-6019 has been rated with a high severity due to its potential for local privilege escalation.
2
How do I fix CVE-2025-6019?
To fix CVE-2025-6019, update the affected Linux-PAM package to the latest version available from your distribution.
3
Who is affected by CVE-2025-6019?
CVE-2025-6019 affects unprivileged users on Debian 12 and Ubuntu 24.04 who log in through sshd.
4
What is the main impact of CVE-2025-6019?
The main impact of CVE-2025-6019 is the potential for an unprivileged user to escalate privileges to root.
5
When was CVE-2025-6019 published?
CVE-2025-6019 was published on June 17, 2025.