|
Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
|---|---|---|---|---|---|
| CVE-2021-4034 | High | Jan 28, 2022 | A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged more... |
0.121, 0.9.2, 0.9.1, 0.120, 0.119, 0.112.1, 0.118, 0.117, 0.116, 0.115
|
|
| BDSA-2025-6906 | Medium | Jul 15, 2025 | Polkit is vulnerable to an out-of-bounds write due to improper handling of XML policies with deeply nested elements. This could allow an attacker with more... | ||
| BDSA-2016-1768 | Medium | May 23, 2025 | polkit is vulnerable to escape from the parent session when using `pkexec --user nonpriv program`. A local attacker could exploit this by supplying a c more... |