CVE-2011-1485
MEDIUM 6.9EPSS 5.2%
Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privileges by executing a setuid program from pkexec, related to the use of the effective user ID instead of the real user ID.
- CVSS v2.0
- 6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C - EPSS
- 5.25% chance of exploitation in the next 30 days, 92th percentile
- Published
- 2011-05-31
- Updated
- 2024-08-06
Proof-of-concept exploits (2)
Metasploit modules (1)
ExploitDB entries (3)
- https://www.exploit-db.com/exploits/35021
- https://www.exploit-db.com/exploits/17942
- https://www.exploit-db.com/exploits/17932