GHSA-9m6p-w8rp-5v54LowCVSS 4.3

A vulnerability has been found in PackageKit up to 1.3.5. Affected is the function g_file_test of...

Published
June 2, 2026
Last Modified
June 2, 2026

🔗 CVE IDs covered (1)

📋 Description

A vulnerability has been found in PackageKit up to 1.3.5. Affected is the function g_file_test of the file src/pk-transaction.c of the component API. Such manipulation of the argument frontend-socket leads to improper authorization. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

🔗 References (8)