Wind River Support Network

HomeDefectsLIN10-8754
Fixed

LIN10-8754 : Security Advisory - polkit - CVE-2021-3560

Created: Jun 3, 2021    Updated: Mar 7, 2022
Resolved Date: Jun 25, 2021
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

polkit: local privilege escalation using polkit_system_bus_name_get_creds_sync()

Upstream fix :
https://gitlab.freedesktop.org/polkit/polkit/-/commit/a04d13affe0fa53ff618e07aa8f57f4c0e3b9b81

CREATE(Triage):(User=admin) CVE-2021-3560 (https://nvd.nist.gov/vuln/detail/CVE-2021-3560)

CVEs


Live chat
Online