#Pack2TheRoot
„Pack2TheRoot“: Sicherheitslücke betrifft mehrere #Linux -Distributionen

Das Telekom-Sicherheitsteam hat die Sicherheitslücke „Pack2TheRoot“ entdeckt, die Rechteausweitung in mehreren Distributionen ermöglicht.
„Pack2TheRoot“: Sicherheitslücke betrifft mehrere Linux-Distributionen
Das Telekom-Sicherheitsteam hat die Sicherheitslücke „Pack2TheRoot“ entdeckt, die Rechteausweitung in mehreren Distributionen ermöglicht.
www.heise.de
April 27, 2026 at 7:42 PM
Deutsche Telekom’s Red Team has revealed Pack2TheRoot, a new priv esc vulnerability impacting several Linux distros

github.security.telekom.com/2026/04/pack...
Pack2TheRoot (CVE-2026-41651): Cross-Distro Local Privilege Escalation Vulnerability
Pack2TheRoot (CVE-2026-41651) is a local privilege escalation (LPE) vulnerability that affects multiple Linux distributions in default installations.
github.security.telekom.com
April 23, 2026 at 1:18 PM
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions.
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions.
www.bleepingcomputer.com
April 24, 2026 at 5:29 PM
Das Telekom-Sicherheitsteam hat die Sicherheitslücke „Pack2TheRoot“ entdeckt, die Rechteausweitung in mehreren Distributionen ermöglicht. #Security
„Pack2TheRoot“: Sicherheitslücke betrifft mehrere Linux-Distributionen
Das Telekom-Sicherheitsteam hat die Sicherheitslücke „Pack2TheRoot“ entdeckt, die Rechteausweitung in mehreren Distributionen ermöglicht.
www.heise.de
April 27, 2026 at 8:41 AM
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions.
www.bleepingcomputer.com
April 24, 2026 at 5:37 PM
Nkom sendte nettopp melding om en alvorlig linux sårbarhet.

Hvis du har noe kjørende med Packagekit, søk opp pack2theroot for mer info.
(debian, ubuntu, fedora mm)
Pack2TheRoot (CVE-2026-41651): Cross-Distro Local Privilege Escalation Vulnerability
Pack2TheRoot (CVE-2026-41651) is a local privilege escalation (LPE) vulnerability that affects multiple Linux distributions in default installations.
github.security.telekom.com
April 22, 2026 at 1:39 PM
📢⚠️ #Pack2TheRoot exposes a 12-year-old flaw in Linux’s PackageKit, letting unprivileged users gain root access in seconds. Affects major distros, patch now

Read: hackread.com/pack2theroot...

#Linux #CyberSecurity #Vulnerability #PackageKit
Pack2TheRoot: 12-Year-Old Linux PackageKit Flaw Enables Full Compromise
Security experts have found a high-severity flaw named Pack2TheRoot in PackageKit that allows hackers to gain full root access on multiple Linux distributions.
hackread.com
April 28, 2026 at 5:31 PM
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions.
flip.it
May 1, 2026 at 1:08 PM
-Nextcloud stops bug bounty program due to AI flood
-Claude Opus generates bad code
-LMDeploy bug gets exploited after 12h
-Apple patches notification retention bug
-Oracle April CPU is out
-New Pack2TheRoot vulnerability
-Rust-coreutils security audit
-Cyberinsurers look to cap AI-related payouts
April 24, 2026 at 8:17 AM
Das Telekom-Sicherheitsteam hat die Sicherheitslücke „Pack2TheRoot“ entdeckt, die Rechteausweitung in mehreren Distributionen ermöglicht.
„Pack2TheRoot“: Sicherheitslücke betrifft mehrere Linux-Distributionen
www.heise.de
April 27, 2026 at 9:38 AM
12-year-old Pack2TheRoot bug lets Linux users gain root privileges
12-year-old Pack2TheRoot bug lets Linux users gain root privileges
'Pack2TheRoot' flaw lets local Linux users gain root via PackageKit. CVE-2026-41651 (8.8) has existed for nearly 12 years.
securityaffairs.com
April 24, 2026 at 8:36 PM
🧵Pack2TheRoot (CVE-2026-41651): nova vulnerabilitat crítica que afecta la majoria de distribucions Linux.
Qualsevol usuari local sense privilegis pot obtenir accés root en cas d'explotar exitosament aquesta vulnerabilitat. Com? 👇🏾
April 24, 2026 at 6:29 AM
Pack2TheRoot: 12-Year-Old Linux PackageKit Flaw Enables Full Compromise

Security experts have found a high-severity flaw named Pack2TheRoot in PackageKit that allows hackers to gain full root access on multiple Linux distributions.
#hackernews #news
Pack2TheRoot: 12-Year-Old Linux PackageKit Flaw Enables Full Compromise
Security experts have found a high-severity flaw named Pack2TheRoot in PackageKit that allows hackers to gain full root access on multiple Linux distributions.
hackread.com
April 29, 2026 at 4:31 PM
PackageKitのPack2TheRoot脆弱性により、ローカルユーザーはパッケージのインストール・削除やroot権限の取得が可能になる。
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions.
www.bleepingcomputer.com
April 24, 2026 at 6:43 PM
A critical 12-year-old Linux vulnerability, Pack2TheRoot, allows local users to gain root access through PackageKit. This high-severity flaw, CVE-2026-41651, was just found with AI's help, highlighting major gaps in…

https://www.tpp.blog/weirt7q

#cybersecurity #pack2theroot #packagekit
April 24, 2026 at 10:15 PM
New ‘Pack2TheRoot’ flaw gives mashers root Linux access #potatosecurity #mashing #news #infosec #security #technology #privacy
April 25, 2026 at 5:09 AM
⚠️ Pack2TheRoot

Une faille vieille de 12 ans a été patchée dans un composant utilisé par de nombreux Linux : PackageKit.

Par exemple, la faille est exploitable sur Debian 13.4 et Fedora 43.

Plus d'infos 👇
- www.it-connect.fr/pack2theroot...

#linux #infosec #cybersecurite
April 27, 2026 at 8:29 AM
Critical Pack2TheRoot Vulnerability Let Attackers Gain Root Access or Compromise the System
Critical Pack2TheRoot Vulnerability Let Attackers Gain Root Access or Compromise the System
A high-severity privilege escalation vulnerability, dubbed Pack2TheRoot (CVE-2026-41651, CVSS 3.1: 8.8), has been publicly disclosed by Deutsche Telekom’s Red Team, affecting multiple major Linux distributions in their default installations. The flaw allows any local unprivileged user to silently install or remove system packages, ultimately achieving full root access without requiring a password. The vulnerability resides in the PackageKit daemon, a widely deployed cross-distribution package management abstraction layer used across Debian, Ubuntu, Fedora, and Red Hat-based systems. Exploiting this flaw, an attacker with basic local access can bypass authorization controls entirely, installing malicious packages or removing critical security components to compromise the system. According to Telekom Security, all PackageKit versions from 1.0.2 through 1.3.4 are affected, spanning over 12 years of releases, creating an exceptionally broad attack surface. Because PackageKit is also an optional dependency of the Cockpit server management project, enterprise servers running Cockpit including those running Red Hat Enterprise Linux (RHEL) may also be exposed. Exploitability has been tested and confirmed on the following default installations: Ubuntu Desktop 18.04, 24.04.4 LTS, and 26.04 LTS Beta Ubuntu Server 22.04 and 24.04 LTS Debian Desktop Trixie 13.4 Rocky Linux Desktop 10.1 Fedora 43 Desktop and Server Any distribution shipping PackageKit with it enabled should be considered potentially vulnerable. The vulnerability was discovered by Telekom Security during targeted research into local privilege escalation vectors on modern Linux systems. The team initially noticed that a pkcon install command could install a system package on Fedora Workstation without prompting for a password. Beginning in 2025, researchers leveraged Claude Opus by Anthropic to guide and accelerate their investigation, ultimately identifying the exploitable flaw. All findings were manually reviewed before being responsibly disclosed to PackageKit maintainers, who confirmed both the issue and its exploitability. A working proof-of-concept (PoC) exists and reliably achieves root code execution in seconds, though it will not be released publicly at this time. How to Check If You’re Vulnerable Since PackageKit and Cockpit aren’t always running as persistent processes (they can activate on demand via D-Bus), a simple process list check is insufficient. Use these commands: Debian/Ubuntu: dpkg -l | grep -i packagekit RPM-based: rpm -qa | grep -i packagekit Check daemon status: systemctl status packagekit or pkmon Despite being exploitable in seconds, the attack leaves a detectable trace. Exploitation causes the PackageKit daemon to hit an assertion failure and crash, which is logged and recoverable by systemd. Defenders should monitor for the following log signature: journalctl --no-pager -u packagekit | grep -i emitted_finished An assertion failure at pk-transaction.c:514 is a strong indicator of active exploitation. Mitigation The vulnerability is fixed in PackageKit 1.3.5, released on April 22, 2026. Distribution-specific patched packages are also available: Debian: CVE tracker at security-tracker.debian.org Ubuntu: Launchpad CVE bug tracker Fedora 42–44: Fixed in PackageKit-1.3.4-3 via Koji System administrators are strongly urged to apply patches immediately, particularly on internet-facing servers running Cockpit. Follow us on Google News , LinkedIn , and X for daily cybersecurity updates. Contact us to feature your stories. The post Critical Pack2TheRoot Vulnerability Let Attackers Gain Root Access or Compromise the System appeared first on Cyber Security News .
cybersecuritynews.com
April 23, 2026 at 7:15 AM