CVE-2021-3560
Red Hat Polkit
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
- CVSS
- 7.8
- EPSS
- 22.2% 97.4% percentile
- CISA KEV
- Listed
- Published
- 2022.02.17