Beveiligingsadvies

CVE-2025-7519

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-07-14 13:35:21
Laatst bijgewerkt 2026-09-01 11:51:41
Toegewezen door redhat
CVSS-score 6.7
Status PUBLISHED

Beschrijving

A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or other unexpected behavior, and arbitrary code execution is not discarded. To exploit this flaw, a high-privilege account is needed as it's required to place the malicious policy file properly.