yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2026-40226
Component Overview
Vulnerability Overview
Name
CVE-2026-40226
Source
NVD (
link
)
Debian (
link
)
Description
In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.
CWEs
CWE-348
Published Date
Apr 10, 2026
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/systemd/systemd/security/advisories/GHSA-9mj4-rrc3-gjcx
Vendor Advisory
Analysis
#
Affected Component
Analysis
systemd
Exploitable
Vulnerability Ratings
#
6.4
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
systemd
buildroot
2025.02.x
256.17
Exploitable
systemd
buildroot
master
258.7
Not Affected
systemd
yocto
master
259.5
Not Affected
systemd
yocto
scarthgap
255.21
Patched
Resolved with patches
#
systemd (yocto:scarthgap)
#
Title
Author
Resolve
1
nspawn: apply BindUser/Ephemeral from settings file only if
Luca Boccassi <luca.boccassi@gmail.com>
CVE-2026-40226
2
nspawn: normalize pivot_root paths
Luca Boccassi <luca.boccassi@gmail.com>
CVE-2026-40226