Security Advisory

CVE-2018-1106

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-04-23 20:00:00
Last updated 2024-09-16 16:18:44
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.