#VU114347 Out-of-bounds write in polkit - CVE-2025-7519
Published: August 21, 2025
polkit
Freedesktop.org
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing XML policy with 32 or more nested elements in depth. A remote attacker can pass specially crafted XML data to the application, trigger an out-of-bounds write and execute arbitrary code on the target system.