CVE-2010-4664
Description
In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
ConsoleKit before 0.4.2 allows authenticated users to bypass policy restrictions and escalate privileges via a remote VNC session.
Vulnerability
ConsoleKit before version 0.4.2 contains a security policy restriction bypass. The flaw occurs when ConsoleKit identifies VNC sessions originating from a remote host; it incorrectly treats them as local sessions, allowing an authenticated system user to bypass intended policy restrictions [1][2]. Affected versions include those shipped with Fedora 11, 12, 13, and Red Hat Enterprise Linux 6 [2].
Exploitation
An attacker must have valid system authentication and the ability to initiate a remote VNC session. By connecting via VNC from a remote host, ConsoleKit misidentifies the session as local, thereby granting the user membership in a more privileged policy group [2]. No additional user interaction or race condition is required beyond establishing the VNC connection.
Impact
Successful exploitation allows an authenticated user to escalate their privileges, becoming a member of a more privileged policy group. This can lead to unauthorized actions beyond the user's intended permissions, potentially compromising system confidentiality, integrity, or availability depending on the privileges gained [1][2].
Mitigation
The fix is included in ConsoleKit version 0.4.2 and later [1][3]. Users should upgrade to ConsoleKit 0.4.2 or newer. For affected distributions, updates were provided by vendors (e.g., Red Hat, Debian) [2][3]. No workaround is documented; upgrading is the recommended mitigation.
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Range: <0.4.2
- consolekit/consolekitv5Range: before 0.4.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- access.redhat.com/security/cve/cve-2010-4664mitrex_refsource_MISC
- bugzilla.redhat.com/show_bug.cgimitrex_refsource_MISC
- security-tracker.debian.org/tracker/CVE-2010-4664mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.