SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    Major Linux PolicyKit Security Vulnerability Uncovered: Pwnkit
Date    Thursday January 27 2022, @04:34AM
Author    martyb
Topic   
from the dept.
https://soylentnews.org/article.pl?sid=22/01/26/2032214

upstart writes:

Major Linux PolicyKit security vulnerability uncovered: Pwnkit:

Polkit, formerly known as PolicyKit, is a systemd SUID-root program. It's installed by default in every major Linux distribution.

[...] This vulnerability is easy to exploit. And, with it, any ordinary user can gain full root privileges on a vulnerable computer by exploiting this vulnerability in its default configuration. As Qualys wrote in its brief description of the problem: "This vulnerability is an attacker's dream come true."

[...] Why is it so bad? Let us count the ways:

[...] While we know Linux can be attacked, Solaris and other Unix systems may also be vulnerable. We do know, however, that OpenBSD can't be attacked by exploits using this vulnerability.

Red Hat rates the PwnKit as having a Common Vulnerability Scoring System (CVSS) score of 7.8. This is high.

When used correctly, Polkit provides an organized way for non-privileged processes to communicate with privileged processes. It is also possible to use polkit to execute commands with elevated privileges using the command pkexec followed by the command intended to be executed with root permission.


Original Submission

Links

  1. "upstart" - https://soylentnews.org/~upstart/
  2. "Major Linux PolicyKit security vulnerability uncovered: Pwnkit" - https://www.zdnet.com/article/major-linux-policykit-security-vulnerability-uncovered-pwnkit/
  3. "Polkit" - https://wiki.archlinux.org/title/Polkit
  4. "systemd" - https://www.freedesktop.org/wiki/Software/systemd/
  5. "Ubuntu" - https://ubuntu.com/
  6. "Debian" - https://www.debian.org/
  7. "Fedora" - https://getfedora.org/
  8. "CentOS" - https://www.centos.org/
  9. "Solaris" - https://www.oracle.com/solaris/solaris11/
  10. "OpenBSD" - https://www.openbsd.org/
  11. "Red Hat" - https://www.redhat.com/en
  12. "PwnKit as having a Common Vulnerability Scoring System (CVSS) score of 7.8" - https://access.redhat.com/security/cve/CVE-2021-4034
  13. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=53527

© Copyright 2024 - SoylentNews, All Rights Reserved

printed from SoylentNews, Major Linux PolicyKit Security Vulnerability Uncovered: Pwnkit on 2024-04-25 00:48:49