CVE Published: 23/04/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: redhat |
Vendor: Red Hat, Inc. |
Product: PackageKit Status : PUBLISHED
CVE-2018-1106 Description
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.