Two critical vulnerabilities have been reported:
- A vulnerability of the linux kernel (CVE-2022-0185) that may allow unprivileged users to gain root access.
- A vulnerability of the polkit
References
[R1] https://access.redhat.com/security/cve/CVE-2022-0185
[R2] https://access.redhat.com/errata/RHSA-2022:0188
[R3] https://www.openwall.com/lists/oss-security/2022/01/18/7
[R4] https://access.redhat.com/security/cve/CVE-2021-4034
[R5] https://access.redhat.com/security/vulnerabilities/RHSB-2022-001
[R6] https://www.qualys.com/2022/01/25/cve-2021-4034/pwnkit.txt