PwnKit Linux bug lets an unprivileged user gain full root privileges

clock • 3 min read
PwnKit bug in Linux lets an unprivileged user to gain full root privileges on the system
Image:

PwnKit bug in Linux lets an unprivileged user to gain full root privileges on the system

The 12-year-old flaw exists in the pkexec component of Polkit system utility

Researchers at Qualys have uncovered a now-patched security vulnerability in a widely used Linux security toolkit that could enable an attacker to gain full root privileges on the system if they ha...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Cloud encryption rates are disastrously low, research

Security

Come on in, the door's open

clock 05 June 2024 • 2 min read
NCSC CTO: UK tech sector not incentivising companies to build secure software

Security Technology

Calls for market reform to usher in secure future tech

clock 17 May 2024 • 2 min read
How a council consolidated security tools and saved 40%

Security Technology

Savings came from lower licencing costs and fewer training and service requirements

clock 24 April 2024 • 4 min read

More on Threats and Risks

Threat group 'systematically compromising Snowflake customer instances'

Threat group 'systematically compromising Snowflake customer instances'

165 organisations notified to date

Kyle Alspach
clock 11 June 2024 • 2 min read
Microsoft warns of potential Azure Service Tags misuse by hackers

Microsoft warns of potential Azure Service Tags misuse by hackers

Ten specific Azure services are currently identified as susceptible

clock 11 June 2024 • 2 min read
Microsoft overhauls Recall, makes it opt-in

Microsoft overhauls Recall, makes it opt-in

The move comes after security concerns from experts

clock 10 June 2024 • 3 min read