Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Canonical Subscribe
Filtered by product Screen-resolution-extra
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-8885 1 Canonical 2 Screen-resolution-extra, Ubuntu Linux 2018-04-27 4.4 MEDIUM 7.0 HIGH
screenresolution-mechanism in screen-resolution-extra 0.17.2 does not properly use the PolicyKit D-Bus API, which allows local users to bypass intended access restrictions by leveraging a race condition via a setuid or pkexec process that is mishandled in a PolicyKitService._check_permission call.