Medium severity6.4NVD Advisory· Published Apr 10, 2026· Updated Jun 17, 2026
CVE-2026-40226
CVE-2026-40226
Description
In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords4 versionspkg:apk/chainguard/py3-systemdpkg:apk/chainguard/py3.13-systemdpkg:rpm/opensuse/systemd&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/systemd-mini&distro=openSUSE%20Leap%2016.0
< 2026.05.06_git20260429-r0+ 3 more
- (no CPE)range: < 2026.05.06_git20260429-r0
- (no CPE)range: < 2026.05.06_git20260429-r0
- (no CPE)range: < 257.13-160000.4.1
- (no CPE)range: < 257.13-160000.4.1
cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:*range: >=233,<257.12
- (no CPE)range: <260
- Range: <260
Patches
Vulnerability mechanics
References
1- github.com/systemd/systemd/security/advisories/GHSA-9mj4-rrc3-gjcxnvdVendor Advisory
News mentions
1- Debian 13.5 point release lands with security fixes, bug patchesHelp Net Security · May 17, 2026