Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The authentication_agent_new function in polkitbackend/polkitbackendinteractiveauthority.c in PolicyKit (aka polkit) before 0.113 allows local users to cause a denial of service (NULL pointer dereference and polkitd daemon crash) by calling RegisterAuthenticationAgent with an invalid object path.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat polkit 拒绝服务漏洞
Vulnerability Description
Red Hat PolicyKit(又名Polkit)是美国红帽(Red Hat)公司的一个用于在Unix兼容系统中对应用程序进行权限控制的工具。该工具为现代桌面提供了一个中央框架用于授权一般应用程序进行特权工作。 Red Hat PolicyKit 0.113之前版本的polkitbackend/polkitbackendinteractiveauthority.c文件中的‘authentication_agent_new’函数存在安全漏洞。本地攻击者可通过调用带有无效对象路径的RegisterAuth
CVSS Information
N/A
Vulnerability Type
N/A