PackageKit could be made to install packages as the administrator.
Software Description:
- packagekit: Provides a package management service
Details:
It was discovered that PackageKit incorrectly handled certain transactions.
A local attacker could use this issue to install arbitrary packages as
root, possibly resulting in privilege escalation.
The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 packagekit 1.3.1-1ubuntu1.1 Ubuntu 24.04 LTS packagekit 1.2.8-2ubuntu1.5 Ubuntu 22.04 LTS packagekit 1.2.5-2ubuntu3.1 After a standard system update you need to reboot your computer to make all the necessary changes.
https://ubuntu.com/security/notices/USN-8195-1
https://launchpad.net/bugs/2149908
Get the latest Linux and open source security news straight to your inbox.