CVE-2011-1485
Linux PolicyKit Race Condition Privilege Escalation
Title source: metasploitDescription
Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privileges by executing a setuid program from pkexec, related to the use of the effective user ID instead of the real user ID.
Exploits (5)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubylocallinux
https://www.exploit-db.com/exploits/35021
metasploit
WORKING POC
GREAT
by xi4oyu, 0a29406d9794e4f9b30b3c5d6702c708 · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/pkexec.rb
References (10)
Scores
EPSS
0.0752
EPSS Percentile
91.8%
Details
CWE
CWE-362
Status
published
Products (1)
redhat/policykit
0.96
Published
May 31, 2011
Tracked Since
Feb 18, 2026