Friday, January 28, 2022

Oracle Linux: (CVE-2021-4034) (Multiple Advisories): polkit security update

Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.From ELSA-2022-0274:[0.112-26.0.1] - Increase timeout to avoid defunct processes [Orabug: 26930744] [0.112-26.1] - pkexec: argv overflow results in local privilege esc. - Resolves: CVE-2021-4034
Solution(s)
  • oracle-linux-upgrade-polkit
  • oracle-linux-upgrade-polkit-devel
  • oracle-linux-upgrade-polkit-docs
  • oracle-linux-upgrade-polkit-libs


  • References
  • ELSA-2022-0274
  • CVE-2021-4034
  • USN-5252-1
  • USN-5252-2




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore