packagekit project kayıtları
packagekit project üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %75
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-209 Generation of Error Message Containing Sensitive Information1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-269 Improper Privilege Management1
- CWE-287 Improper Authentication1
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2026-41651Kavram kanıtı | PackageKit vulnerable to TOCTOU Race on Transaction Flags leads to arbitrary package installation as rootpackagekit project · packagekit · CWE-367 | Yüksek8,8 | — | %0,2 | 22 Nis 2026 |
31İzleyin | CVE-2020-16122İstismar yok | Packagekit's apt backend lets user install untrusted local packagespackagekit project · packagekit · CWE-269 | Yüksek7,8 | — | %0,3 | 7 Kas 2020 |
22İzleyin | CVE-2018-1106İstismar yok | An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signepackagekit project · packagekit · CWE-287 | Orta5,5 | — | %0,4 | 23 Nis 2018 |
21İzleyin | CVE-2011-2515İstismar yok | PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packagpackagekit project · packagekit · CWE-732 | Orta5,3 | — | %0,4 | 27 Kas 2019 |
13İzleyin | CVE-2020-16121İstismar yok | PackageKit error messages leak presence and mimetype of files to unprivileged userspackagekit project · packagekit · CWE-209 | Düşük3,3 | — | %0,5 | 7 Kas 2020 |
13İzleyin | CVE-2022-0987İstismar yok | A flaw was found in PackageKit in the way some of the methods exposed by the Transaction interface examines files.packagekit project · packagekit · CWE-200 | Düşük3,3 | — | %0,3 | 28 Haz 2022 |
13İzleyin | CVE-2024-0217İstismar yok | Packagekitd: use-after-free in idle function callbackpackagekit project · packagekit · CWE-416 | Düşük3,3 | — | %0,2 | 3 Oca 2024 |
8İzleyin | CVE-2013-1764İstismar yok | The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updates" method.packagekit project · packagekit · CWE-264 | Düşük2,1 | — | %0,4 | 16 Nis 2014 |
- CVE-2026-4165135İzleyin
PackageKit vulnerable to TOCTOU Race on Transaction Flags leads to arbitrary package installation as root
YüksekCVSS 8,8Kavram kanıtıEPSS %0packagekit project · packagekit22 Nis 2026
- CVE-2020-1612231İzleyin
Packagekit's apt backend lets user install untrusted local packages
YüksekCVSS 7,8İstismar yokEPSS %0packagekit project · packagekit7 Kas 2020
- CVE-2018-110622İzleyin
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signe
OrtaCVSS 5,5İstismar yokEPSS %0packagekit project · packagekit23 Nis 2018
- CVE-2011-251521İzleyin
PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packag
OrtaCVSS 5,3İstismar yokEPSS %0packagekit project · packagekit27 Kas 2019
- CVE-2020-1612113İzleyin
PackageKit error messages leak presence and mimetype of files to unprivileged users
DüşükCVSS 3,3İstismar yokEPSS %0packagekit project · packagekit7 Kas 2020
- CVE-2022-098713İzleyin
A flaw was found in PackageKit in the way some of the methods exposed by the Transaction interface examines files.
DüşükCVSS 3,3İstismar yokEPSS %0packagekit project · packagekit28 Haz 2022
- CVE-2024-021713İzleyin
Packagekitd: use-after-free in idle function callback
DüşükCVSS 3,3İstismar yokEPSS %0packagekit project · packagekit3 Oca 2024
- CVE-2013-17648İzleyin
The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updates" method.
DüşükCVSS 2,1İstismar yokEPSS %0packagekit project · packagekit16 Nis 2014