Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4288

Опубликовано: 03 окт. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.2

Описание

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

РелизСтатусПримечание
devel

released

0.105-3ubuntu3
lucid

released

0.96-2ubuntu0.2
precise

released

0.104-1ubuntu1.1
quantal

released

0.104-2ubuntu1.1
raring

released

0.105-1ubuntu1.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 7%
0.00033
Низкий

7.2 High

CVSS2

Связанные уязвимости

redhat
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

nvd
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

debian
почти 12 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass ...

github
больше 3 лет назад

Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.

oracle-oval
почти 12 лет назад

ELSA-2013-1270: polkit security update (IMPORTANT)

EPSS

Процентиль: 7%
0.00033
Низкий

7.2 High

CVSS2