Publishing details

Changelog

policykit-1 (0.96-2ubuntu0.2) lucid-security; urgency=low

  * SECURITY UPDATE: use of pkcheck without specifying uid is racy,
    possibly leading to privilege escalation
    - debian/patches/CVE-2013-4288.patch: implement pid,start-time,uid
      syntax so callers have a non-racy way of using pkcheck.
    - CVE-2013-4288
 -- Marc Deslauriers <email address hidden>   Wed, 11 Sep 2013 09:50:59 -0400

Available diffs

Builds

Package files