THREAT OPS › CVEs › CVE-2021-4034
CVE-2021-4034 — Red Hat Polkit Out-of-Bounds Read and Write Vulnerability
The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.
Vulnerability details
- Affected productsPolkit
- KEV remediation due2022-07-18
Related reporting
- [NVD] CVE-2021-4034 (HIGH 7.8) — A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the callinnvd
- July 2026 CVE Landscaperecordedfuture