“Although it nominally requires ‘allow_active’ privileges, udisks ships by default on almost all Linux distributions, so nearly any system is vulnerable,”
A libblockdev bug turns a logged-in desktop user into root through udisks, which ships by default almost everywhere. Qualys has working exploits on Ubuntu, Debian, Fedora and openSUSE. On SUSE a separate PAM bug hands out the needed privilege to begin with. Chained, it is local to root with minimal effort.