CVE Vulnerabilities

CVE-2015-3256

Published: Oct 26, 2015 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
4.4 MODERATE
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW

PolicyKit (aka polkit) before 0.113 allows local users to cause a denial of service (memory corruption and polkitd daemon crash) and possibly gain privileges via unspecified vectors, related to javascript rule evaluation.

Affected Software

Name Vendor Start Version End Version
Polkit Polkit_project * 0.112 (including)
Red Hat Enterprise Linux 7 RedHat polkit-0:0.112-6.el7_2 *
Policykit-1 Ubuntu upstream *

References