Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wv7-fpg8-f44q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

EPSS

Процентиль: 7%
0.00033
Низкий

Дефекты

CWE-362

Связанные уязвимости

ubuntu
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

redhat
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

nvd
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

debian
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass ...

oracle-oval
почти 12 лет назад

ELSA-2013-1270: polkit security update (IMPORTANT)

EPSS

Процентиль: 7%
0.00033
Низкий

Дефекты

CWE-362