CISA Known Exploited Vulnerability

CVE-2021-4034

Red Hat · Polkit

Red Hat Polkit Out-of-Bounds Read and Write Vulnerability

Date added
BOD 22-01 due date
CWE CWE-787
Ransomware Unknown

CISA description

The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.

Required action

Apply updates per vendor instructions.