[Buildroot] [PATCH 2021.02.x] package/polkit: backport upstream patch to fix CVE-2021-4034

Peter Korsgaard peter at korsgaard.com
Fri Jan 28 21:58:04 UTC 2022


>>>>> "Yann" == Yann E MORIN <yann.morin.1998 at free.fr> writes:

 > Signed-off-by: Yann E. MORIN <yann.morin.1998 at free.fr>
 > Cc: Marek Belisko <marek.belisko at open-nandra.com>
 > Cc: Adam Duskett <aduskett at gmail.com>
 > Cc: Fabrice Fontaine <fontaine.fabrice at gmail.com>
 > ---
 >  ...l-privilege-escalation-CVE-2021-4034.patch | 79 +++++++++++++++++++
 >  package/polkit/polkit.mk                      |  3 +
 >  2 files changed, 82 insertions(+)
 >  create mode 100644 package/polkit/0004-pkexec-local-privilege-escalation-CVE-2021-4034.patch

 > diff --git a/package/polkit/0004-pkexec-local-privilege-escalation-CVE-2021-4034.patch b/package/polkit/0004-pkexec-local-privilege-escalation-CVE-2021-4034.patch
 > new file mode 100644
 > index 0000000000..8c01eed775
 > --- /dev/null
 > +++ b/package/polkit/0004-pkexec-local-privilege-escalation-CVE-2021-4034.patch
 > @@ -0,0 +1,79 @@
 > +From a2bf5c9c83b6ae46cbd5c779d3055bff81ded683 Mon Sep 17 00:00:00 2001
 > +From: Jan Rybar <jrybar at redhat.com>
 > +Date: Tue, 25 Jan 2022 17:21:46 +0000
 > +Subject: [PATCH] pkexec: local privilege escalation (CVE-2021-4034)
 > +

Added your s-o-b to make check-package happy and applied to 2021.02.x,
thanks!

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list