yocto ▾
›
scarthgap ▾
›
component
›
polkit
Component Overview
Vulnerability Overview
Name
polkit
Version
124
Type
library
Description
Polkit Authorization Framework
Licenses
LGPL-2.0-or-later
PURL
-
CPE
cpe:2.3:*:polkit_project:polkit:124:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
yocto
kirkstone
0.119
yocto
master
127
Vulnerabilities
#
Name
Analysis
Description
CVE-2016-2568
Exploitable
pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.