CVE-2026-7867

EUVD-2026-54277
A flaw was found in udisks2. A local attacker with an active console session can exploit insufficient authorization checking on the 'as-user' option in the org.freedesktop.UDisks2.Filesystem.Mount() D-Bus method. This allows the attacker to spoof the 'as-user' parameter, mounting filesystems on behalf of arbitrary users, including privileged accounts. This can lead to local privilege escalation through mount point injection and manipulation of the mount namespace visible to privileged users.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 7.37%
Debian logo
Debian Releases
Debian Product
Codename
udisks2
bookworm
2.9.4-4+deb12u2
fixed
bookworm (security)
2.9.4-4+deb12u2
fixed
bullseye
not-affected
forky
2.11.2-1
fixed
sid
2.11.2-1
fixed
trixie
2.10.1-12.1+deb13u2
fixed
trixie (security)
2.10.1-12.1+deb13u2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
udisks2
bionic
not-affected
focal
not-affected
jammy
not-affected
noble
Fixed 2.10.1-6ubuntu1.5
released
resolute
Fixed 2.10.91-1ubuntu2.1
released
trusty
not-affected
xenial
not-affected
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
libudisks2
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
libudisks2-debuginfo
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
libudisks2-devel
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-debuginfo
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-debugsource
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-lsm
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-lsm-debuginfo
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-lvm2
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed
udisks2-lvm2-debuginfo
Amazon Linux 2023
0:2.10.1-6.amzn2023.0.4
fixed