CVE-2016-2568 PUBLISHED

pkexec, when used with --user nonpriv, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

EPSS 0.13% · 32.6th percentile

Risk Scores

EPSS Score
0.13%
32.6th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSpolicykit-10, 0.105-11ubuntu2, 0.105-13
Ubuntu:22.04:LTSpolicykit-10.105-31.1, 0.105-31ubuntu1, 0.105-31
Ubuntu:24.04:LTSpolicykit-10, 123-1, 123-3
Ubuntu:18.04:LTSpolicykit-10.105-20ubuntu0.18.04.1, 0, 0.105-18
Ubuntu:25.10policykit-1126-2, 0
Ubuntu:20.04:LTSpolicykit-10.105-26ubuntu1.1, 0.105-26ubuntu1, 0
Ubuntu:Pro:14.04:LTSpolicykit-10.105-4ubuntu3.14.04.6, 0.105-4ubuntu3.14.04.5, 0.105-4ubuntu3.14.04.2

Timeline

References

Open in Interactive Console →