Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

rootio-linux: Unrestricted File Access Through Arbitrary File Path

ROOT-OS-DEBIAN-13-CVE-2025-38206
Summary

A bug in rootio-linux, a software used by some Root devices, could allow an attacker to access and potentially modify any file on the system. This could lead to unauthorized changes or data theft. Root has released updates to fix this issue, so it's essential to apply the latest patches to affected devices.

What to do
  • Update rootio-linux to version 6.12.63-1.root.io.64.
Affected software
VendorProductAffected versionsFix available
– rootio-linux <= 6.12.63-1.root.io.64 6.12.63-1.root.io.64
Original title
CVE-2025-38206 in rootio-linux - Patched by Root
Original description
Root has patched CVE-2025-38206 in the rootio-linux package for Root:Debian:13. Multiple fixed versions available.
Published: 6 Mar 2026 · Updated: 6 Mar 2026 · First seen: 6 Mar 2026