Source |
The Hacker News |
Identifiant |
5443865 |
Date de publication |
2022-06-28 20:01:21 (vue: 2022-06-29 04:06:03) |
Titre |
CISA Warns of Active Exploitation of \'PwnKit\' Linux Vulnerability in the Wild |
Texte |
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) this week moved to add a Linux vulnerability dubbed PwnKit to its Known Exploited Vulnerabilities Catalog, citing evidence of active exploitation.
The issue, tracked as CVE-2021-4034 (CVSS score: 7.8), came to light in January 2022 and concerns a case of local privilege escalation in polkit's pkexec utility, which allows an |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 2022 4034 active agency allows as cve came case catalog cisa citing concerns cvss cybersecurity dubbed pwnkit to escalation in evidence exploitation exploited infrastructure issue its known january light linux moved of local pkexec polkit privilege pwnkit score: security to add a tracked utility vulnerabilities vulnerability warns week which wild |
Tags |
Vulnerability
|
Stories |
|
Move |
|