CVE-2018-1106: Medium severity Packagekit Project Packagekit vulnerability
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.
Other sources
An authentication bypass flaw has been found in PackageKit since version 1.0.2. A local attacker can bypass the authentication in pktransactionauthorizeactionsfinishedcb function of pk-transaction.c file, and install signed packages without administrator privileges.
Patch: https://github.com/hughsie/PackageKit/commit/7e8a7905ea9abbd1f384f05f36a4458682cd4697
Upstream vulnerable commit: https://github.com/hughsie/PackageKit/commit/f176976e24e8c17b80eff222572275517c16bdad
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1106?
CVE-2018-1106 is classified as a medium severity vulnerability due to its potential to allow unauthorized users to install packages.
How do I fix CVE-2018-1106?
To mitigate CVE-2018-1106, upgrade PackageKit to version 1.1.10 or newer on Red Hat systems or ensure you are using the needed fixed versions on Debian-based systems.
Which software versions are affected by CVE-2018-1106?
CVE-2018-1106 affects PackageKit versions prior to 1.1.10 and includes specific older versions on Debian and Ubuntu systems.
Can CVE-2018-1106 be exploited remotely?
CVE-2018-1106 requires local access to the system to be exploited, so it is not remotely exploitable.
What systems are impacted by CVE-2018-1106?
CVE-2018-1106 impacts systems running affected versions of PackageKit, including various Red Hat and Debian distributions.