oss-sec mailing list archives

Re: pwnkit: Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)


From: Sam James <sam () gentoo org>
Date: Tue, 25 Jan 2022 18:04:49 +0000



On 25 Jan 2022, at 17:57, Qualys Security Advisory <qsa () qualys com> wrote:


Qualys Security Advisory
pwnkit: Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)
[snip]

Hi,

For the benefit of downstreams: patch is available in gitlab [0]
but no release yet.

[0] https://gitlab.freedesktop.org/polkit/polkit/-/commit/a2bf5c9c83b6ae46cbd5c779d3055bff81ded683

Best,
sam

Attachment: signature.asc
Description: Message signed with OpenPGP


Current thread: