CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Freedesktop Redhat3Enterprise Linux Openshift Container PlatformPolkitJun 17, 2026 Mar 26, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to...Show more |
2Freedesktop Redhat2Enterprise Linux PolkitMay 13, 2026 Feb 13, 2017 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer. |