Improper authorization in PolicyKit - CVE-2018-1116
Published: July 23, 2018 / Updated: July 24, 2018
Vulnerability details
The vulnerability allows a local attacker to obtain potentially sensitive information or cause DoS condition on the target system.
The vulnerability exists due to improper implementation of the polkit_backend_interactive_authority_check_authorization function in the polkitd daemon. A local attacker can test for authentication and trigger authentication of unrelated processes owned by other users to access sensitive information or cause the service to crash.
Affected software
Gentoo Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power, little endian
Opensuse
Fedora
polkit (Red Hat package)
polkit
How to mitigate CVE-2018-1116
polkit (Red Hat package) - update to 0.112-26.el7
polkit - addressed in versions 0.113-16.fc27, 0.115-1.fc28