Wind River Support Network

HomeDefectsLIN1018-7800
Fixed

LIN1018-7800 : Security Advisory - polkit - CVE-2021-3560

Created: Jun 3, 2021    Updated: Mar 7, 2022
Resolved Date: Jun 29, 2021
Found In Version: 10.18.44.1
Fix Version: 10.18.44.23
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Userspace

Description

polkit: local privilege escalation using polkit_system_bus_name_get_creds_sync()

Upstream fix :
https://gitlab.freedesktop.org/polkit/polkit/-/commit/a04d13affe0fa53ff618e07aa8f57f4c0e3b9b81

CREATE(Triage):(User=admin) CVE-2021-3560 (https://nvd.nist.gov/vuln/detail/CVE-2021-3560)

CVEs


Live chat
Online