{"id":"CVE-2025-53391","details":"The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zulucrypt_6.2.0-1 package has insecure PolicyKit allow_any/allow_inactive/allow_active settings that allow a local user to escalate their privileges to root.","modified":"2026-04-10T05:30:49.467074Z","published":"2025-06-28T22:15:23Z","references":[{"type":"WEB","url":"https://bugs.debian.org/1108288"},{"type":"WEB","url":"https://deb.debian.org/debian/pool/main/z/zulucrypt/zulucrypt_6.2.0-1.dsc"},{"type":"WEB","url":"https://salsa.debian.org/debian/zulucrypt/-/blob/9d661c9f384c4d889d3387944e14ac70cfb9684b/debian/patches/fix_zulupolkit_policy.patch"},{"type":"WEB","url":"https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1108288"}],"schema_version":"1.7.5"}