Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A 12-year-old privilege escalation flaw in PackageKit, a package management service enabled by default across major Linux distributions including Ubuntu, Debian, Fedora, and Rocky Linux, allows any authenticated local user to gain full root access without authorization. Affected versions span PackageKit 1.0.2 through 1.3.4; a patch is available in version 1.3.5. A public proof-of-concept exploit is circulating, raising the operational risk for organizations running Linux desktops or servers where local user access is granted to contractors, employees, or shared systems.

Author

Tech Jacks Solutions