REDHAT-BUG-1006677: High severity polkit vulnerability
Sebastian Krahmer reported a security issue was found in polkit (CVE-2013-4288 bz 1002375).
It was found that rtkit was vulnerable to this issue as well, since it communicated to polkit authority using an unsafe DBUS interface.
This issue has been assigned CVE-2013-4326
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1006677?
The vulnerability identified in REDHAT-BUG-1006677 is rated as high severity due to its potential impact on system security.
How do I fix REDHAT-BUG-1006677?
To fix REDHAT-BUG-1006677, ensure you update your polkit and rtkit packages to the latest versions provided by Red Hat.
What systems are affected by REDHAT-BUG-1006677?
REDHAT-BUG-1006677 affects Red Hat's polkit and rtkit software components.
Is there a workaround for REDHAT-BUG-1006677?
Currently, there are no recommended workarounds for REDHAT-BUG-1006677 other than applying the available updates.
What is the nature of the vulnerability in REDHAT-BUG-1006677?
The vulnerability in REDHAT-BUG-1006677 relates to improper validation in polkit, which can allow unauthorized users to escalate privileges.