CVE-2012-5617: High severity gksu-polkit vulnerability
Published Nov 25, 2019
·Updated
gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation
Affected Software
4 affected components
debian/gksu-polkit
Gksu-polkit Project Gksu-polkit
Fedoraproject Fedora=18
Fedoraproject Fedora=19
Event History
Nov 25, 2019
CVE Published
via MITRE·01:42 PM
Data Sourced
via MITRE·01:42 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2012-5617?
CVE-2012-5617 has been identified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2012-5617?
To fix CVE-2012-5617, update the gksu-polkit package to the latest version provided by your distribution.
3
What systems are affected by CVE-2012-5617?
CVE-2012-5617 affects the gksu-polkit package on Debian and Fedora systems, particularly versions 18 and 19.
4
What is the exploit method for CVE-2012-5617?
CVE-2012-5617 exploits a permissive PolicyKit policy configuration that allows unauthorized privilege escalation.
5
Is there a workaround for CVE-2012-5617?
A potential workaround for CVE-2012-5617 is to modify the PolicyKit configuration to enforce stricter permissions until an update can be applied.