zuluCrypt could be made to run programs as an administrator.. ========================================================================== Ubuntu Security Notice USN-8218-1 April 30, 2026 zulucrypt vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: zuluCrypt could be made to run programs as an administrator. Software Description: - zulucrypt: A simple, feature rich and powerful solution for hard drives encryption Details: Aaron Rainbolt discovered that zuluCrypt used insecure PolicyKit settings in zuluPolkit. An attacker could possibly use this issue to cause local privilege escalation to root. (CVE-2025-53391) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS libzulucrypt-dev 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucrypt-exe-dev 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucrypt-exe1.2.0 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucrypt-plugins 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucrypt1.2.0 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucryptpluginmanager-dev 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro libzulucryptpluginmanager1.0.0 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulucrypt-cli 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulucrypt-gui 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulumount-cli 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulumount-gui 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulupolkit 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro zulusafe-cli 6.2.0-1ubuntu3+esm1 Available with Ubuntu Pro Ubuntu 22.04 LTS libzulucrypt-dev 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-exe-dev 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-exe1.2.0 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-plugins 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt1.2.0 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucryptpluginmanager-dev 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro libzulucryptpluginmanager1.0.0 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulucrypt-cli 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulucrypt-gui 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulumount-cli 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulumount-gui 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulupolkit 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro zulusafe-cli 5.7.1-2ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 20.04 LTS libzulucrypt-dev 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-exe-dev 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-exe1.2.0 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt-plugins 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucrypt1.2.0 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucryptpluginmanager-dev 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro libzulucryptpluginmanager1.0.0 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulucrypt-cli 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulucrypt-gui 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulumount-cli 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulumount-gui 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulupolkit 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro zulusafe-cli 5.7.0-1ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS libzulucrypt-dev 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucrypt-exe-dev 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucrypt-exe1.2.0 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucrypt-plugins 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucrypt1.2.0 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucryptpluginmanager-dev 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro libzulucryptpluginmanager1.0.0 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulucrypt-cli 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulucrypt-gui 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulumount-cli 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulumount-gui 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulupolkit 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro zulusafe-cli 5.4.0-2ubuntu0.1~esm2 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8218-1 CVE-2025-53391 . ZuluCrypt vulnerability allows local privilege escalation in multiple Ubuntu versions. Update recommended to avoid risks.. zuluCrypt Ubuntu vulnerability local privilege escalation security update. . Severity: Critical. LinuxSecurity.com Team
policykit-1 could be made to crash if it received specially crafted data.. =========================================================================Ubuntu Security Notice USN-5304-1 February 28, 2022 policykit-1 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.10 - Ubuntu 20.04 LTS Summary: policykit-1 could be made to crash if it received specially crafted data. Software Description: - policykit-1: framework for managing administrative policies and privileges Details: Kevin Backhouse discovered that PolicyKit incorrectly handled file descriptors. A local attacker could possibly use this issue to cause PolicyKit to crash, resulting in a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.10: policykit-1 0.105-31ubuntu0.2 Ubuntu 20.04 LTS: policykit-1 0.105-26ubuntu1.3 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5304-1 CVE-2021-4115 Package Information: https://launchpad.net/ubuntu/+source/policykit-1/0.105-31ubuntu0.2 https://launchpad.net/ubuntu/+source/policykit-1/0.105-26ubuntu1.3 . The Debian Security Advisory DSA-5001-1 emphasizes a Node.js flaw that might lead to information disclosure via manipulated inputs.. policykit update, denial of service, administrative privileges. . Severity: Important. LinuxSecurity.com Team
policykit-1 could be made to run programs as an administrator.. =========================================================================Ubuntu Security Notice USN-5252-2 January 25, 2022 policykit-1 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 ESM - Ubuntu 14.04 ESM Summary: policykit-1 could be made to run programs as an administrator. Software Description: - policykit-1: framework for managing administrative policies and privileges Details: USN-5252-1 fixed a vulnerability in policykit-1. This update provides the corresponding update for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. Original advisory details: It was discovered that the PolicyKit pkexec tool incorrectly handled command-line arguments. A local attacker could use this issue to escalate privileges to an administrator. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 ESM: policykit-1 0.105-14.1ubuntu0.5+esm1 Ubuntu 14.04 ESM: policykit-1 0.105-4ubuntu3.14.04.6+esm1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5252-2 https://ubuntu.com/security/notices/USN-5252-1 CVE-2021-4034 . Uncover the recent vulnerability in PolicyKit outlined in Ubuntu Security Notice USN-5252-2, which poses risks to privilege elevation.. PolicyKit Vulnerability, Ubuntu ESM Security, Admin Privilege Escalation. . Severity: Important. LinuxSecurity.com Team
policykit-1 could be made to run programs as an administrator.. =========================================================================Ubuntu Security Notice USN-5252-1 January 25, 2022 policykit-1 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: policykit-1 could be made to run programs as an administrator. Software Description: - policykit-1: framework for managing administrative policies and privileges Details: It was discovered that the PolicyKit pkexec tool incorrectly handled command-line arguments. A local attacker could use this issue to escalate privileges to an administrator. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.10: policykit-1 0.105-31ubuntu0.1 Ubuntu 20.04 LTS: policykit-1 0.105-26ubuntu1.2 Ubuntu 18.04 LTS: policykit-1 0.105-20ubuntu0.18.04.6 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5252-1 CVE-2021-4034 Package Information: https://launchpad.net/ubuntu/+source/policykit-1/0.105-31ubuntu0.1 https://launchpad.net/ubuntu/+source/policykit-1/0.105-26ubuntu1.2 https://launchpad.net/ubuntu/+source/policykit-1/0.105-20ubuntu0.18.04.6 . Ensure your system is patched to rectify the PolicyKit flaw in Ubuntu, which allows local exploitation for privilege elevation.. PolicyKit Vulnerability, Ubuntu Update, Privilege Escalation, Software Fix. . Severity: Critical. LinuxSecurity.com Team
The Qualys Research Labs discovered a local privilege escalation in PolicyKit's pkexec. Details can be found in the Qualys advisory at . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2899-1
The Qualys Research Labs discovered a local privilege escalation in PolicyKit's pkexec. Details can be found in the Qualys advisory at . - ------------------------------------------------------------------------- Debian Security Advisory DSA-5059-1
The system could be made to run programs as an administrator.. =========================================================================Ubuntu Security Notice USN-4980-1 June 03, 2021 policykit-1 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.04 - Ubuntu 20.10 - Ubuntu 20.04 LTS Summary: The system could be made to run programs as an administrator. Software Description: - policykit-1: framework for managing administrative policies and privileges Details: Kevin Backhouse discovered that polkit incorrectly handled errors in the polkit_system_bus_name_get_creds_sync function. A local attacker could possibly use this issue to escalate privileges. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.04: libpolkit-agent-1-0 0.105-30ubuntu0.1 libpolkit-gobject-1-0 0.105-30ubuntu0.1 policykit-1 0.105-30ubuntu0.1 Ubuntu 20.10: libpolkit-agent-1-0 0.105-29ubuntu0.1 libpolkit-gobject-1-0 0.105-29ubuntu0.1 policykit-1 0.105-29ubuntu0.1 Ubuntu 20.04 LTS: libpolkit-agent-1-0 0.105-26ubuntu1.1 libpolkit-gobject-1-0 0.105-26ubuntu1.1 policykit-1 0.105-26ubuntu1.1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4980-1 CVE-2021-3560 Package Information: https://launchpad.net/ubuntu/+source/policykit-1/0.105-30ubuntu0.1 https://launchpad.net/ubuntu/+source/policykit-1/0.105-29ubuntu0.1 https://launchpad.net/ubuntu/+source/policykit-1/0.105-26ubuntu1.1 . The Ubuntu Security Notice USN-4981-1 addresses a critical vulnerability in the OpenSSH protocol that could allow unauthorized access to secure shell sessions.. UbuntuSecurity Notice, policykit issue, privilege escalation risk. . Severity: Important. LinuxSecurity.com Team
PolicyKit could allow unintended access.. =========================================================================Ubuntu Security Notice USN-3934-2 September 02, 2019 policykit-1 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 12.04 ESM Summary: PolicyKit could allow unintended access. Software Description: - policykit-1: framework for managing administrative policies and privileges Details: USN-3934-1 fixed a vulnerability in Policykit. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that PolicyKit incorrectly relied on the fork() system call in the Linux kernel being atomic. A local attacker could possibly use this issue to gain access to services that have cached authorizations. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 ESM: libpolkit-backend-1-0 0.104-1ubuntu1.5 policykit-1 0.104-1ubuntu1.5 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3934-2 https://ubuntu.com/security/notices/USN-3934-1 CVE-2019-6133 . Critical flaw in PolicyKit on Ubuntu 12.04 ESM permits unauthorized access. Security update recommended.. Ubuntu PolicyKit Security Update, PolicyKit Access Vulnerability, Software Security Advisory. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.