Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

rootio-linux: Unauthenticated Remote Code Execution Risk

ROOT-OS-DEBIAN-11-CVE-2025-40049
Summary

A security patch has been released for rootio-linux, a software used by Root, to fix a vulnerability that could allow an attacker to execute code remotely without being authenticated. This vulnerability is significant because it could be exploited by unauthorized individuals to access and control systems. Root users should update to the latest patched version of rootio-linux to protect their systems.

What to do
  • Update rootio-linux to version 5.10.247-1.root.io.42.
Affected software
VendorProductAffected versionsFix available
– rootio-linux <= 5.10.247-1.root.io.42 5.10.247-1.root.io.42
Original title
CVE-2025-40049 in rootio-linux - Patched by Root
Original description
Root has patched CVE-2025-40049 in the rootio-linux package for Root:Debian:11. Multiple fixed versions available.
Published: 6 Mar 2026 · Updated: 6 Mar 2026 · First seen: 6 Mar 2026