Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2015-3218
Description:The authentication_agent_new function in polkitbackend/polkitbackendinteractiveauthority.c in PolicyKit (aka polkit) before 0.113 allows local users to cause a denial of service (NULL pointer dereference and polkitd daemon crash) by calling RegisterAuthenticationAgent with an invalid object path.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2015-3218
1035023
http://www.securitytracker.com/id/1035023
76086
http://www.securityfocus.com/bid/76086
FEDORA-2015-11058
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/161721.html
FEDORA-2015-11743
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/162294.html
USN-3717-1
https://usn.ubuntu.com/3717-1/
[polkit-devel] 20150529 Crash authentication_agent_new with invalid object path in RegisterAuthenticationAgent
http://lists.freedesktop.org/archives/polkit-devel/2015-May/000420.html
[polkit-devel] 20150630 Crash authentication_agent_new with invalid object path in RegisterAuthenticationAgent
http://lists.freedesktop.org/archives/polkit-devel/2015-May/000421.html
[polkit-devel] 20150702 polkit-0.113 released
http://lists.freedesktop.org/archives/polkit-devel/2015-July/000432.html
openSUSE-SU-2015:1734
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00010.html
openSUSE-SU-2015:1927
http://lists.opensuse.org/opensuse-updates/2015-11/msg00042.html




© 1998-2025 E-Soft Inc. All rights reserved.