CVE-2018-1106

Publication date

2018-04-23 20:00:00

Family

redhat

State

PUBLISHED

Description

An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.