CVE-2015-3218

EPSS 0.13%
Published: 10/26/2015Modified: 4/28/2026

Description

The authentication_agent_new function in polkitbackend/polkitbackendinteractiveauthority.c in PolicyKit (aka polkit) before 0.113 allows local users to cause a denial of service (NULL pointer dereference and polkitd daemon crash) by calling RegisterAuthenticationAgent with an invalid object path.

Affected packages (1)

References (1)