CVSS—
Severityhigh
Weakness—
ExploitedYes, in CISA KEV
Ransomware useKnown
Federal fix dueJul 18, 2022
Description
The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.
Required action (CISA)
Apply updates per vendor instructions.
