Hacker News new | ask | show | jobs
by jandrusk 1600 days ago
There is already POC code published: https://github.com/mebeim/CVE-2021-4034
1 comments

Worth noting that this and the other exploit that was posted on twitter last night do not work (at least) on Fedora 34, and some versions of OpenSUSE. Generally they will not work on versions of polkit which disable GVFS. My POC [0] handles this by just setting the relevant env variable explicitly.

[0] https://github.com/PeterGottesman/pwnkit-exploit