CVE-2011-1485

Linux PolicyKit Race Condition Privilege Escalation

Title source: metasploit

Description

Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privileges by executing a setuid program from pkexec, related to the use of the effective user ID instead of the real user ID.

Exploits (5)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocallinux
https://www.exploit-db.com/exploits/35021
exploitdb WORKING POC
by xi4oyu · clocallinux
https://www.exploit-db.com/exploits/17942
exploitdb WORKING POC
by zx2c4 · clocallinux
https://www.exploit-db.com/exploits/17932
nomisec WORKING POC
by Pashkela · poc
https://github.com/Pashkela/CVE-2011-1485
metasploit WORKING POC GREAT
by xi4oyu, 0a29406d9794e4f9b30b3c5d6702c708 · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/pkexec.rb

Scores

EPSS 0.0752
EPSS Percentile 91.8%

Details

CWE
CWE-362
Status published
Products (1)
redhat/policykit 0.96
Published May 31, 2011
Tracked Since Feb 18, 2026