{"cveID":"CVE-2021-4034","vendorProject":"Red Hat","product":"Polkit","vulnerabilityName":"Red Hat Polkit Out-of-Bounds Read and Write Vulnerability","dateAdded":"2022-06-27","shortDescription":"The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.","requiredAction":"Apply updates per vendor instructions.","dueDate":"2022-07-18","knownRansomwareCampaignUse":"Known","notes":"https://nvd.nist.gov/vuln/detail/CVE-2021-4034","cwes":["CWE-787"],"year":2021,"state":"mapped","stale_reasons":[],"mappings":[{"domain":"enterprise","cve":"CVE-2021-4034","technique":"T1068","technique_name_at_mapping":"Exploitation for Privilege Escalation","mapping_type":"exploitation_technique","capability_group":"oob","comments":"The Polkit/Pwnkit vulnerability (CVE-2021-4034) is a critical vulnerability impacting every major Linux distribution. Its attack vector allows privilege escalation and can even give the attacker root access.","references":["https://www.crowdstrike.com/en-us/blog/hunting-pwnkit-local-privilege-escalation-in-linux/","https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-249a"],"status":"complete","source_file":"kev-07.28.2025_attack-16.1-enterprise.json","attack_version":"16.1","kev_snapshot":"07/28/2025"}],"techniques":[{"id":"T1068","domains":["enterprise"],"in_current_bundle":true,"live":true,"name_now":"Exploitation for Privilege Escalation","name_at_mapping":"Exploitation for Privilege Escalation","renamed":false,"revoked_by":null,"mapping_types":["exploitation_technique"],"sigma_rule_count":31,"has_detection_strategy":true}],"mapping_types":["exploitation_technique"],"has_exploitation_technique":true,"mapping_attack_versions":["16.1"],"mapping_domains":["enterprise"],"sigma_coverage":"full","sigma_rules_tagged_cve":["0506a799-698b-43b4-85a1-ac4c84c720e9"],"added_after_mapping_snapshot":false,"_source":"kevmap","_built":"2026-08-23 05:47 UTC","_attack_version":"19.2"}