[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] pwnkit: Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)
From:       Bastian Blank <bblank () thinkmo ! de>
Date:       2022-01-27 13:29:06
Message-ID: YfKeIoWB2J1zwJhq () shell ! thinkmo ! de
[Download RAW message or body]

On Thu, Jan 27, 2022 at 01:45:33PM +0100, Kai Lüke wrote:
> An alternative to pkexec that is not setuid but also uses polkit auth
> is systemd-run (here is an attempt at mimicking the sudo UX:
> https://gist.github.com/pothos/73dd4f7694acc3b6bbed614438f6e2b1).

Or just "machinectl login .host".

Bastian

-- 
You!  What PLANET is this!
		-- McCoy, "The City on the Edge of Forever", stardate 3134.0
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic