Описание
The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zulucrypt_6.2.0-1 package has insecure PolicyKit allow_any/allow_inactive/allow_active settings that allow a local user to escalate their privileges to root.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps-legacy/xenial | not-affected | |
| esm-apps/bionic | released | 5.4.0-2ubuntu0.1~esm2 |
| esm-apps/focal | released | 5.7.0-1ubuntu0.1~esm1 |
| esm-apps/jammy | released | 5.7.1-2ubuntu0.1~esm1 |
| esm-apps/noble | released | 6.2.0-1ubuntu3+esm1 |
| esm-apps/xenial | not-affected | |
| jammy | needed | |
| noble | needed | |
| oracular | ignored | end of life, was needs-triage |
Показывать по
Ссылки на источники
EPSS
9.3 Critical
CVSS3
Связанные уязвимости
The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zulucrypt_6.2.0-1 package has insecure PolicyKit allow_any/allow_inactive/allow_active settings that allow a local user to escalate their privileges to root.
The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zu ...
The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zulucrypt_6.2.0-1 package has insecure PolicyKit allow_any/allow_inactive/allow_active settings that allow a local user to escalate their privileges to root.
Уязвимость компонента PolicyKit пакета Debian zulucrypt, позволяющая нарушителю повысить свои привилегии
EPSS
9.3 Critical
CVSS3