Количество 19
Количество 19
CVE-2026-41651
PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...
CVE-2026-41651
PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ...
CVE-2026-41651
PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ha
CVE-2026-41651
PackageKit is a a D-Bus abstraction layer that allows the user to mana ...
openSUSE-SU-2026:20646-1
Security update for PackageKit
SUSE-SU-2026:1939-1
Security update for PackageKit
SUSE-SU-2026:1701-1
Security update for PackageKit
SUSE-SU-2026:1700-1
Security update for PackageKit
SUSE-SU-2026:1619-2
Security update for PackageKit
RLSA-2026:19354
Important: PackageKit security update
RLSA-2026:19141
Important: PackageKit security update
RLSA-2026:11635
Important: PackageKit security update
RLSA-2026:11504
Important: PackageKit security update
ELSA-2026-19354
ELSA-2026-19354: PackageKit security update (IMPORTANT)
ELSA-2026-19141
ELSA-2026-19141: PackageKit security update (IMPORTANT)
ELSA-2026-11635
ELSA-2026-11635: PackageKit security update (IMPORTANT)
ELSA-2026-11504
ELSA-2026-11504: PackageKit security update (IMPORTANT)
BDU:2026-05781
Уязвимость пакетного менеджера PackageKit, связанная с ошибками синхронизации при использовании общего ресурса («Ситуация гонки»), позволяющая нарушителю получить несанкционированный доступ к системе с правами root
ROS-20260609-73-0005
Уязвимость PackageKit
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-41651 PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ... | CVSS3: 8.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41651 PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ... | CVSS3: 8.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41651 PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition on transaction flags that allows unprivileged users to install packages as root and thus leads to a local privilege escalation. This is patched in version 1.3.5. A local unprivileged user can install arbitrary RPM packages as root, including executing RPM scriptlets, without authentication. The vulnerability is a TOCTOU race condition on `transaction->cached_transaction_flags` combined with a silent state-machine guard that discards illegal backward transitions while leaving corrupted flags in place. Three bugs exist in `src/pk-transaction.c`: 1. Unconditional flag overwrite (line 4036): `InstallFiles()` writes caller-supplied flags to `transaction->cached_transaction_flags` without checking whether the transaction ha | CVSS3: 8.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41651 PackageKit is a a D-Bus abstraction layer that allows the user to mana ... | CVSS3: 8.8 | 0% Низкий | 3 месяца назад | |
openSUSE-SU-2026:20646-1 Security update for PackageKit | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1939-1 Security update for PackageKit | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1701-1 Security update for PackageKit | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1700-1 Security update for PackageKit | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1619-2 Security update for PackageKit | 0% Низкий | 3 месяца назад | ||
RLSA-2026:19354 Important: PackageKit security update | 0% Низкий | 2 месяца назад | ||
RLSA-2026:19141 Important: PackageKit security update | 0% Низкий | 2 месяца назад | ||
RLSA-2026:11635 Important: PackageKit security update | 0% Низкий | 3 месяца назад | ||
RLSA-2026:11504 Important: PackageKit security update | 0% Низкий | 3 месяца назад | ||
ELSA-2026-19354 ELSA-2026-19354: PackageKit security update (IMPORTANT) | 19 дней назад | |||
ELSA-2026-19141 ELSA-2026-19141: PackageKit security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-11635 ELSA-2026-11635: PackageKit security update (IMPORTANT) | 3 месяца назад | |||
ELSA-2026-11504 ELSA-2026-11504: PackageKit security update (IMPORTANT) | 3 месяца назад | |||
BDU:2026-05781 Уязвимость пакетного менеджера PackageKit, связанная с ошибками синхронизации при использовании общего ресурса («Ситуация гонки»), позволяющая нарушителю получить несанкционированный доступ к системе с правами root | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
ROS-20260609-73-0005 Уязвимость PackageKit | CVSS3: 8.8 | 0% Низкий | около 2 месяцев назад |
Уязвимостей на страницу