Description
The polkit_backend_action_pool_init function in polkitbackend/polkitbackendactionpool.c in PolicyKit (aka polkit) before 0.113 might allow local users to gain privileges via duplicate action IDs in action descriptions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-3308 | The polkit_backend_action_pool_init function in polkitbackend/polkitbackendactionpool.c in PolicyKit (aka polkit) before 0.113 might allow local users to gain privileges via duplicate action IDs in action descriptions. |
Ubuntu USN |
USN-3717-1 | PolicyKit vulnerabilities |
Ubuntu USN |
USN-3717-2 | PolicyKit vulnerabilities |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T05:39:32.026Z
Reserved: 2015-04-10T00:00:00.000Z
Link: CVE-2015-3255
No data.
Status : Deferred
Published: 2015-10-26T19:59:02.887
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-3255
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN