THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-4897 (MEDIUM 5.5) — A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to an out-of-memory (OOM) condition, resulting in a Denial of

[NVD] CVE-2026-4897 (MEDIUM 5.5) — A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to an out-of-memory (OOM) condition, resulting in a Denial of

lownvdPublished 2026-03-26

CVE-2026-4897 CVSS: 5.5 MEDIUM Published: 2026-03-26T15:16:43.017

A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to an out-of-memory (OOM) condition, resulting in a Denial of Service (DoS) for the system.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-4897