Publishing details

Changelog

policykit-1 (0.105-3ubuntu3) saucy; urgency=low

  * SECURITY UPDATE: use of pkcheck without specifying uid is racy,
    possibly leading to privilege escalation
    - debian/patches/CVE-2013-4288.patch: implement pid,start-time,uid
      syntax so callers have a non-racy way of using pkcheck.
    - CVE-2013-4288
 -- Marc Deslauriers <email address hidden>   Wed, 18 Sep 2013 12:38:05 -0400

Available diffs

Builds

Package files