Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 19

Количество 19

ubuntu логотип

CVE-2026-41651

3 месяца назад

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2026-41651

3 месяца назад

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-41651

3 месяца назад

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ha

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-41651

3 месяца назад

PackageKit is a a D-Bus abstraction layer that allows the user to mana ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20646-1

3 месяца назад

Security update for PackageKit

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1939-1

3 месяца назад

Security update for PackageKit

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1701-1

3 месяца назад

Security update for PackageKit

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1700-1

3 месяца назад

Security update for PackageKit

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1619-2

3 месяца назад

Security update for PackageKit

EPSS: Низкий
rocky логотип

RLSA-2026:19354

2 месяца назад

Important: PackageKit security update

EPSS: Низкий
rocky логотип

RLSA-2026:19141

2 месяца назад

Important: PackageKit security update

EPSS: Низкий
rocky логотип

RLSA-2026:11635

3 месяца назад

Important: PackageKit security update

EPSS: Низкий
rocky логотип

RLSA-2026:11504

3 месяца назад

Important: PackageKit security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19354

19 дней назад

ELSA-2026-19354: PackageKit security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19141

17 дней назад

ELSA-2026-19141: PackageKit security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11635

3 месяца назад

ELSA-2026-11635: PackageKit security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11504

3 месяца назад

ELSA-2026-11504: PackageKit security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2026-05781

4 месяца назад

Уязвимость пакетного менеджера PackageKit, связанная с ошибками синхронизации при использовании общего ресурса («Ситуация гонки»), позволяющая нарушителю получить несанкционированный доступ к системе с правами root

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20260609-73-0005

около 2 месяцев назад

Уязвимость PackageKit

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-41651

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...

CVSS3: 8.8
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-41651

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...

CVSS3: 8.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-41651

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ha

CVSS3: 8.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-41651

PackageKit is a a D-Bus abstraction layer that allows the user to mana ...

CVSS3: 8.8
0%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20646-1

Security update for PackageKit

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1939-1

Security update for PackageKit

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1701-1

Security update for PackageKit

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1700-1

Security update for PackageKit

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1619-2

Security update for PackageKit

0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:19354

Important: PackageKit security update

0%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:19141

Important: PackageKit security update

0%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:11635

Important: PackageKit security update

0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:11504

Important: PackageKit security update

0%
Низкий
3 месяца назад
oracle-oval логотип
ELSA-2026-19354

ELSA-2026-19354: PackageKit security update (IMPORTANT)

0%
Низкий
19 дней назад
oracle-oval логотип
ELSA-2026-19141

ELSA-2026-19141: PackageKit security update (IMPORTANT)

0%
Низкий
17 дней назад
oracle-oval логотип
ELSA-2026-11635

ELSA-2026-11635: PackageKit security update (IMPORTANT)

0%
Низкий
3 месяца назад
oracle-oval логотип
ELSA-2026-11504

ELSA-2026-11504: PackageKit security update (IMPORTANT)

0%
Низкий
3 месяца назад
fstec логотип
BDU:2026-05781

Уязвимость пакетного менеджера PackageKit, связанная с ошибками синхронизации при использовании общего ресурса («Ситуация гонки»), позволяющая нарушителю получить несанкционированный доступ к системе с правами root

CVSS3: 8.8
0%
Низкий
4 месяца назад
redos логотип
ROS-20260609-73-0005

Уязвимость PackageKit

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу