Polkit: Local privilege escalation A vulnerability in polkit could lead to local root privilege escalation. polkit 2022-01-27 2022-01-27 832057 local 0.120-r2 0.120-r2

polkit is a toolkit for managing policies related to unprivileged processes communicating with privileged process.

Flawed input validation of arguments was discovered in the 'pkexec' program's main() function.

A local attacker could achieve root privilege escalation.

Run the following command as root: # chmod 0755 /usr/bin/pkexec

Upgrade Polkit to a patched version.

# emerge --sync # emerge --ask --verbose ">=sys-auth/polkit-0.120-r2"
CVE-2021-4034 sam sam