CVE-2015-4625: Integer Overflow
Integer overflow in the authenticationagentnewcookie function in Po ...
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4625?
The severity of CVE-2015-4625 is medium with a CVSS score of 4.6.
What is the affected software for CVE-2015-4625?
The affected software includes Fedora 21, Fedora 22, OpenSUSE 13.1, OpenSUSE 13.2, and Red Hat Polkit.
How can local users exploit CVE-2015-4625?
Local users can exploit CVE-2015-4625 by creating a large number of connections, triggering the issuance of a duplicate cookie value and gaining privileges.
Is there a fix available for CVE-2015-4625?
Yes, there is a fix available for CVE-2015-4625. Upgrade to version 0.113 or higher of PolicyKit (aka polkit).
Are there any references for CVE-2015-4625?
Yes, you can refer to the following links for more information: [link1](http://www.openwall.com/lists/oss-security/2015/06/08/3), [link2](http://www.openwall.com/lists/oss-security/2015/06/09/1), [link3](http://www.openwall.com/lists/oss-security/2015/06/16/21).