CVE-2021-3560
high · 7.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2023-05-12Remediation due 2023-06-02
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
7.8
CVSS
23.7%
EPSS (exploit prob.)
98th
EPSS percentile
2022-02-16
Published
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-863CWE-754
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| polkit_project | polkit | < 0.119 |
| debian | debian_linux | 11.0 |
| canonical | ubuntu_linux | 20.04 |
| redhat | virtualization | 4.0 |
| redhat | virtualization_host | 4.0 |
| redhat | enterprise_linux | 8.0 |
| redhat | openshift_container_platform | 4.7 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux | 8.0 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/172836/polkit-Authentication-Bypass.html
- http://packetstormsecurity.com/files/172846/Facebook-Fizz-Denial-Of-Service.html
- https://bugzilla.redhat.com/show_bug.cgi?id=1961710
- https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/
- http://packetstormsecurity.com/files/172836/polkit-Authentication-Bypass.html
- http://packetstormsecurity.com/files/172846/Facebook-Fizz-Denial-Of-Service.html
- https://bugzilla.redhat.com/show_bug.cgi?id=1961710
- https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-3560
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2021-3560