{"schema_version":"1.7.5","id":"CVE-2021-3560","published":"2022-02-16T19:15:08.450Z","modified":"2026-07-08T06:03:29.751017611Z","related":["SUSE-SU-2021:1842-1","SUSE-SU-2021:1843-1","SUSE-SU-2021:1844-1","openSUSE-SU-2021:0838-1","openSUSE-SU-2021:1843-1","openSUSE-SU-2024:11180-1"],"details":"It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.","affected":[{"ranges":[{"type":"GIT","repo":"https://gitlab.freedesktop.org/polkit/polkit","events":[{"introduced":"0"},{"fixed":"2e5348bf4eb0ef984db32f7f96ec6722d441c6ca"}],"database_specific":{"cpe":"cpe:2.3:a:polkit_project:polkit:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"0.119"}],"source":"CPE_RANGE"}}],"versions":["0.118","0.117","0.116","0.115","0.114","0.113","0.112","0.111","0.110","0.109","0.108","0.107","0.106","0.105","0.104","0.103","0.102","0.96","0.101","0.100","0.99","0.98","0.97","0.95","0.94","0.93","0.92","0.91","POLICY_KIT_0_9","POLICY_KIT_0_8","POLICY_KIT_0_7","POLICY_KIT_0_6","POLICY_KIT_0_5","POLICY_KIT_0_4","POLICY_KIT_0_3","start"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-3560.json"}}],"references":[{"type":"WEB","url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-3560"},{"type":"ADVISORY","url":"http://packetstormsecurity.com/files/172836/polkit-Authentication-Bypass.html"},{"type":"ADVISORY","url":"http://packetstormsecurity.com/files/172846/Facebook-Fizz-Denial-Of-Service.html"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1961710"},{"type":"EVIDENCE","url":"https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/"}],"database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"20.04"},{"last_affected":"20.04"}],"source":"CPE_STRING","vendor_product":"canonical:ubuntu_linux"},{"cpes":["cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"11.0"},{"last_affected":"11.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux"},{"cpes":["cpe:2.3:a:redhat:openshift_container_platform:4.7:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"4.7"},{"last_affected":"4.7"}],"source":"CPE_STRING","vendor_product":"redhat:openshift_container_platform"},{"cpes":["cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"4.0"},{"last_affected":"4.0"}],"source":"CPE_STRING","vendor_product":"redhat:virtualization"},{"cpes":["cpe:2.3:a:redhat:virtualization_host:4.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"4.0"},{"last_affected":"4.0"}],"source":"CPE_STRING","vendor_product":"redhat:virtualization_host"}]},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}