Vulnerability Description
pkexec.c in pkexec in libpolkit in PolicyKit 0.96 allows local users to determine the existence of arbitrary files via the argument.
CVSS Score
2.1
LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Freedesktop | Policykit | 0.96 |
Related Weaknesses (CWE)
References
- http://bugs.freedesktop.org/show_bug.cgi?id=26982ExploitPatch
- http://cgit.freedesktop.org/PolicyKit/commit/?id=14bdfd816512a82b1ad258fa143ae5fExploitPatch
- http://marc.info/?l=oss-security&m=127014095301235&w=2
- http://marc.info/?l=oss-security&m=127014999113790&w=2
- http://secunia.com/advisories/39149Vendor Advisory
- http://secunia.com/advisories/48817
- http://security.gentoo.org/glsa/glsa-201204-06.xml
- https://exchange.xforce.ibmcloud.com/vulnerabilities/57543
- https://launchpad.net/bugs/532852Exploit
- http://bugs.freedesktop.org/show_bug.cgi?id=26982ExploitPatch
- http://cgit.freedesktop.org/PolicyKit/commit/?id=14bdfd816512a82b1ad258fa143ae5fExploitPatch
- http://marc.info/?l=oss-security&m=127014095301235&w=2
- http://marc.info/?l=oss-security&m=127014999113790&w=2
- http://secunia.com/advisories/39149Vendor Advisory
- http://secunia.com/advisories/48817
FAQ
What is CVE-2010-0750?
CVE-2010-0750 is a vulnerability with a CVSS score of 2.1 (LOW). pkexec.c in pkexec in libpolkit in PolicyKit 0.96 allows local users to determine the existence of arbitrary files via the argument.
How severe is CVE-2010-0750?
CVE-2010-0750 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-0750?
Check the references section above for vendor advisories and patch information. Affected products include: Freedesktop Policykit.