pkg:Debian/policykit-1

22 total CVEsHIGH8MEDIUM6

✅ Check your installed version

All known vulnerabilities

  • HIGH7.8CVE-2021-3560⚠ KEVRed Hat Polkit Incorrect Authorization Vulnerability
    from 0, < 0.105-31
  • HIGH7.8CVE-2021-4034⚠ KEVpolicykit-1 - security update
    from 0, < 0.105-25+deb10u1
  • HIGH7.8CVE-2021-4034⚠ KEVpolicykit-1 - security update
    from 0, < 0.105-31+deb11u1
  • HIGH7.8CVE-2021-4034⚠ KEVpolicykit-1 - security update
    from 0, < 0.105-18+deb9u2
  • HIGH8.8CVE-2018-19788policykit-1 - security update
    from 0, < 0.105-23
  • HIGH8.8CVE-2018-19788policykit-1 - security update
    from 0, < 0.105-18+deb9u1
  • HIGH8.8CVE-2018-19788policykit-1 - security update
    from 0, < 0.105-15~deb8u4
  • HIGH7.8CVE-2016-2568pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes ch…
    from 0
  • MEDIUM6.7CVE-2025-7519A flaw was found in polkit.
    from 0
  • MEDIUM6.7CVE-2019-6133In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be bypassed because fork() is not atomic, and therefore authoriz…
    from 0, < 0.105-25
  • MEDIUM5.5CVE-2026-4897A flaw was found in polkit.
    from 0, < 0.105-31+deb11u2
  • MEDIUM5.5CVE-2021-4115There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion.
    from 0, < 0.105-31+deb11u2
  • MEDIUM4.4CVE-2018-1116policykit-1 - security update
    from 0, < 0.105-21
  • MEDIUM4.4CVE-2018-1116policykit-1 - security update
    from 0, < 0.105-15~deb8u3
  • CVE-2015-4625Integer overflow in the authentication_agent_new_cookie function in PolicyKit (aka polkit) before 0.113 allows local users to gain privileg…
    from 0, < 0.105-12
  • CVE-2015-3255The polkit_backend_action_pool_init function in polkitbackend/polkitbackendactionpool.c in PolicyKit (aka polkit) before 0.113 might allow…
    from 0, < 0.105-12
  • CVE-2015-3218The authentication_agent_new function in polkitbackend/polkitbackendinteractiveauthority.c in PolicyKit (aka polkit) before 0.113 allows lo…
    from 0, < 0.105-11
  • CVE-2013-4288Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a set…
    from 0, < 0.105-3+nmu1
  • CVE-2011-4945PolicyKit 0.103 sets the AdminIdentities to "wheel" by default, which allows local users in the wheel group to gain root privileges without…
    from 0, < 0.103-1
  • CVE-2011-1485policykit-1 - race condition
    from 0, < 0.96-4+squeeze1
  • CVE-2011-1485policykit-1 - race condition
    from 0, < 0.101-4
  • CVE-2008-1658Format string vulnerability in the grant helper (polkit-grant-helper.c) in PolicyKit 0.7 and earlier allows attackers to cause a denial of…
    from 0, < 0.8-1