Known vulnerabilities in polkit
Vendor:
Freedesktop.org
Software:
polkit
Software CPE:
cpe:2.3:a:freedesktop_org:polkit:*:*:*:*:*:*:*:*
Total vulnerabilities:
7
Public exploits:
2
Known exploited (KEV):
2
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114347 - Out-of-bounds write CVE-2025-7519 |
CWE-787 | High | - | 21.08.2025 |
SB2025082171 SB2025082172 SB2025082174 and 8 more |
||
| #VU61268 - Resource exhaustion CVE-2021-4115 |
CWE-400 | Low | - | 13.03.2022 |
SB2022031301 SB2022031302 SB2022040517 and 13 more |
||
| #VU60007 - Improper input validation CVE-2021-4034 |
CWE-20 | Medium | 121 | 26.01.2022 |
SB2022012601 SB2022012604 SB2022012605 and 51 more |
||
| #VU53837 - Permissions, Privileges, and Access Controls CVE-2021-3560 |
CWE-264 | Low | 0.119 | 07.06.2021 |
SB2021060707 SB2021060712 SB2021060714 and 18 more |
||
| #VU33727 - Improper input validation CVE-2015-4625 |
CWE-20 | Medium | 0.113 | 26.10.2015 |
SB2015102606 SB2015070815 |
||
| #VU32408 - Permissions, Privileges, and Access Controls CVE-2015-3255 |
CWE-264 | Low | 0.113 | 26.10.2015 |
SB2015102605 SB2015070814 SB2016111504 |
||
| #VU32033 - NULL Pointer Dereference CVE-2015-3218 |
CWE-476 | Low | 0.113 | 26.10.2015 |
SB2015102602 SB2015070812 SB2015070813 |