ISN 2025-14: Critical IGEL OS Privilege Escalation
Updated 6 May 2025 (corrected an error in fix versions)
First published 5 May 2025
Critical
CVSS:3.1 n/a
Summary
A security vulnerability has been found in the IGEL OS network configuration mechanism. This affects the following product versions:
IGEL OS 12
IGEL OS 11
Details
A vulnerability of the privilege escalation type has been found in the IGEL OS network configuration mechanism. It could enable a non-privileged user to execute commands as root. This issue is rated as critical.
Update Instructions
OS 12: Update to IGEL OS 12.7.0 when available.
OS 11: Update to IGEL OS 11.10.290.