Unrated severityNVD Advisory· Published Apr 11, 2008· Updated Apr 23, 2026
CVE-2008-1658
CVE-2008-1658
Description
Format string vulnerability in the grant helper (polkit-grant-helper.c) in PolicyKit 0.7 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in a password.
Affected products
2cpe:2.3:a:freedesktop:policykit:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:freedesktop:policykit:*:*:*:*:*:*:*:*range: <=0.7
- cpe:2.3:a:freedesktop:policykit:0.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- www.securityfocus.com/bid/28702nvdPatch
- secunia.com/advisories/29755nvdVendor Advisory
- bugs.freedesktop.org/show_bug.cginvd
- gitweb.freedesktop.orgnvd
- www.mandriva.com/security/advisoriesnvd
- www.vupen.com/english/advisories/2008/1254nvd
- bugs.launchpad.net/ubuntu/+source/policykit/+bug/205037nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/41877nvd
- www.redhat.com/archives/fedora-package-announce/2008-April/msg00176.htmlnvd
News mentions
0No linked articles in our index yet.