A memory corruption vulnerability has been uncovered in Polkits pkexec, a SUID-root program that is installed by default on every major Linux distribution. The vulnerability, dubbed Pwnkit and tracked as CVE-2021-4034, can be exploited in its default configuration to allow any unprivileged user to gain full root privileges on a vulnerable host. Polkit is a component for controlling systemwide privileges in Unix-like operating systems. The researchers recommend users apply patches for this vulnerability immediately.”]
Source: https://www.govinfosecurity.com/flaw-in-polkits-pkexec-puts-linux-users-at-risk-a-18398

