[arch-security] Privelege escalation via Wheel + PolKit

Mark Lee mark at markelee.com
Wed Dec 17 18:26:45 UTC 2014


On 12/17/2014 12:09 PM, Mark Lee wrote:
> To all,
> 
> This was just posted on oss-security; I figure it's a good read.
> 
> https://www.alertlogic.com/blog/dont-let-grinch-steal-christmas/
> 
> Regards,
> Mark
> 

To all,

I'd like to state that this is expected behavior, but since some Arch
users have a wheel group for sudo and install a DE (like KDE or Gnome),
they probably also have polkit installed.

Regards,
Mark


More information about the arch-security mailing list