<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:53:36 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-03207</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-03207</link>
      <description>bdu:2021-03207</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-03207</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2021-3560 — CVE-2021-3560 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2021-3560</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2021-3560</guid>
    </item>
    <item>
      <title>certfr-2022-avi-351 — De multiples vulnérabilités ont été découvertes dans les logiciels
Juniper . Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-351</link>
      <description>certfr-2022-avi-351</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-351</guid>
    </item>
    <item>
      <title>EUVD-2026-255872</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-255872</link>
      <description>EUVD-2026-255872</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-255872</guid>
    </item>
    <item>
      <title>fkie_cve-2021-3560</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3560</link>
      <description>&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-3560</guid>
    </item>
    <item>
      <title>GHSA-7c49-j253-wq5r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7c49-j253-wq5r</link>
      <description>&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7c49-j253-wq5r</guid>
    </item>
    <item>
      <title>gsd-2021-3560</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-3560</link>
      <description>gsd-2021-3560</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-3560</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-3560 — It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests elevating the privile…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3560</link>
      <description>msrc_CVE-2021-3560</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-3560</guid>
    </item>
    <item>
      <title>OESA-2021-1230 — polkit security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1230</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: polkit&lt;/p&gt;
&lt;p&gt;polkit is a toolkit for defining and handling authorizations. It is used for allowing unprivileged processes to speak to privileged processes.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in polkit. When a requesting process disconnects from dbus-daemon just before the call to polkit_system_bus_name_get_creds_sync starts, the process cannot get a unique uid and pid of the process and it cannot verify the privileges of the requesting process. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2021-3560)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: polkit&lt;/p&gt;
&lt;p&gt;polkit is a toolkit for defining and handling authorizations. It is used for allowing unprivileged processes to speak to privileged processes.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in polkit. When a requesting process disconnects from dbus-daemon just before the call to polkit_system_bus_name_get_creds_sync starts, the process cannot get a unique uid and pid of the process and it cannot verify the privileges of the requesting process. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2021-3560)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1230</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0838-1 — Security update for polkit</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0838-1</link>
      <description>&lt;p&gt;Security update for polkit&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for polkit&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0838-1</guid>
    </item>
    <item>
      <title>RHSA-2021:2236 — Red Hat Security Advisory: polkit security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:2236</link>
      <description>&lt;p&gt;polkit: local privilege escalation using polkit_system_bus_name_get_creds_sync()&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;polkit: local privilege escalation using polkit_system_bus_name_get_creds_sync()&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:2236</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:1842-1 — Security update for polkit</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:1842-1</link>
      <description>&lt;p&gt;Security update for polkit&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for polkit&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:1842-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-3560</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3560</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: policykit-1, Ubuntu:22.04:LTS: policykit-1&lt;/p&gt;
&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: policykit-1, Ubuntu:22.04:LTS: policykit-1&lt;/p&gt;
&lt;p&gt;It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3560</guid>
    </item>
  </channel>
</rss>
