Total vulnerabilities in the database
In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".
Software | From | Fixed in |
---|---|---|
systemd_project / systemd | 242-rc1 | 242-rc1.x |
systemd_project / systemd | 242-rc2 | 242-rc2.x |
systemd_project / systemd | 242-rc3 | 242-rc3.x |
systemd_project / systemd | - | 241.x |
redhat / enterprise_linux | 7.0 | 7.0.x |
fedoraproject / fedora | 30 | 30.x |
debian / debian_linux | 8.0 | 8.0.x |