SoyITPro[verified]@SoyITProDisclosure
A new local privilege escalation vulnerability (CVE‑2026‑41651) in PackageKit allows local users to gain root access, and has been present since 2014 across multiple Linux distributions.
Cyber Security News[verified]@The_Cyber_NewsDisclosure
The article announces CVE‑2026‑41651, a high‑severity privilege escalation flaw in PackageKit that lets local users gain root access, yet it offers no PoC, exploit code, evidence of active exploitation, or patch information.
kevops[verified]@kevvOH_Active Exploitation
A test server was compromised via CVE‑2026‑41651, enabling a reverse shell and subsequent stealthy root persistence. The post documents a concrete, active exploitation incident rather than a simple disclosure or patch notice.
Co11ateral[verified]@co11ateralExploit
CVE‑2026‑41651 is a local privilege‑escalation vulnerability in PackageKit, now publicly documented with a functional PoC that allows unprivileged users to install packages as root without authentication.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediDisclosure
The tweet announces a 12‑year‑old vulnerability in PackageKit that grants attackers root access, providing the CVE ID and severity score but no evidence of exploitation or mitigation.
Dark Web Intelligence[verified]@DailyDarkWebPatch
A new package‑level privilege escalation vulnerability (CVE-2026-41651) is disclosed with a high CVSS score, and organizations are urged to update PackageKit to mitigate the risk.
Nicolas Krassas[verified]@DinosnExploit
The post announces a CTF-style Docker lab for CVE-2026-41651, providing a GitHub repository with exploit code and a solution grid that documents a local privilege escalation through PackageKit's permissive polkit.
Hunt.io[verified]@HuntioDisclosure
A long‑existing local privilege‑escalation flaw in PackageKit (CVE‑2026‑41651) allows unprivileged Linux users to gain root. The fix resides in PackageKit 1.3.5, so users should update or apply distro patches.