[CLSA-2026:1780069518] polkit: Fix of CVE-2018-1116
Type:
security
Severity:
Moderate
Release date:
2026-05-29 15:45:22 UTC
Description:
- CVE-2018-1116: polkit trusts client-supplied UID in CheckAuthorization, allowing a local attacker to spoof or DoS the authentication-agent dialog of unrelated processes.
Updated packages:
  • polkit-0.96-11.el6_10.1.tuxcare.els2.i686.rpm
    sha:9886202e90775233184e56e60150ce1124a1111f302e82ad81f7e083e7e257b4
  • polkit-0.96-11.el6_10.1.tuxcare.els2.x86_64.rpm
    sha:3af37413ad6230e9ba477d829a54555c039b92a6e4163a35db40f072b17a05d5
  • polkit-desktop-policy-0.96-11.el6_10.1.tuxcare.els2.noarch.rpm
    sha:5c56735118ff4222747567bab412690e1b859e7fea6925ebdc5ccbaf72fc10ec
  • polkit-devel-0.96-11.el6_10.1.tuxcare.els2.i686.rpm
    sha:c2348d77a08f5a1236c41b38089d811daa10d596011918970d6e605fc264256e
  • polkit-devel-0.96-11.el6_10.1.tuxcare.els2.x86_64.rpm
    sha:93046e27897cb5abe1fc12ca47c07b6ab6e2ecea047b19e829fcd5d067c9f349
  • polkit-docs-0.96-11.el6_10.1.tuxcare.els2.x86_64.rpm
    sha:fa8dd27a658fc0bda3c3e875bf942f6152715ddf34c5d7e868d99cbd10f42777
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.