Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-4115

EPSS 0.11% · P28
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-4115

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threat from this vulnerability is to availability. NOTE: Polkit process outage duration is tied to the failing process being reaped and a new one being spawned
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
未加控制的资源消耗(资源穷尽)
Source: NVD (National Vulnerability Database)
Vulnerability Title
polkit 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
polkit是一个在类 Unix操作系统中控制系统范围权限的组件。通过定义和审核权限规则,实现不同优先级进程间的通讯。 polkit 存在资源管理错误漏洞,该漏洞源于进程文件描述符耗尽,攻击者利用该漏洞允许非特权用户导致polkit崩溃。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-polkitd 0.117 -

II. Public POCs for CVE-2021-4115

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-4115

登录查看更多情报信息。

Same Patch Batch · n/a · 2022-02-21 · 12 CVEs total

CVE-2022-252977.5 HIGHArbitrary File Write
CVE-2021-44141samba 后置链接漏洞
CVE-2022-0563util-linux 安全漏洞
CVE-2021-45008Plesk Cms 访问控制错误漏洞
CVE-2022-24553Zfaka 代码问题漏洞
CVE-2021-44568libsolv 缓冲区错误漏洞
CVE-2021-27753HCL Sametime 路径遍历漏洞
CVE-2021-27755HCL Sametime 安全漏洞
CVE-2021-27796Brocade Fabric OS 安全漏洞
CVE-2021-27797Brocade Fabric OS 信任管理问题漏洞
CVE-2022-24564Checkmk 跨站脚本漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2021-4115

No comments yet


Leave a comment