Linux libblockdev Package Security Update Advisory (CVE-2025-6019)
Overview
Major Linux distributions have released security updates that address vulnerabilities in libblockdev. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-6019
Major Linux distributions using libblockdev and udisks [2][3][4][5][6]
Resolved Vulnerabilities
Privilege escalation vulnerability in libblockdec’s handling of udisks integration (CVE-2025-6019)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-6019
Libblockdev version: Apply patches from the Referenced Sites [2][3][4][5][6]
References
[1] CVE-2025-6019 Detail
https://nvd.nist.gov/vuln/detail/cve-2025-6019
[2] Bug 2370051 (CVE-2025-6019) – CVE-2025-6019 libblockdev: LPE from allow_active to root in libblockdev via udisks
https://bugzilla.redhat.com/show_bug.cgi?id=2370051
[3] [SECURITY] [DLA 4221-1] libblockdev security update
https://lists.debian.org/debian-lts-announce/2025/06/msg00018.html
[4] cve-2025-6019
https://alas.aws.amazon.com/cve/html/CVE-2025-6019.html
[5] cve-2025-6019
https://www.suse.com/security/cve/CVE-2025-6019.html
[6] Fixes available for local privilege escalation vulnerability in libblockdev using udisks
https://ubuntu.com/blog/udisks-libblockdev-lpe-vulnerability-fixes-available