Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHSA-2026:11504
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:11504
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:11504.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2026:11504
Upstream
CVE-2026-41651
Published
2026-04-30T10:10:38Z
Modified
2026-04-30T10:36:12.259891Z
Severity
8.8 (High)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: PackageKit security update
Details
References
https://access.redhat.com/errata/RHSA-2026:11504
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2460604
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_11504.json
https://access.redhat.com/security/cve/CVE-2026-41651
https://www.cve.org/CVERecord?id=CVE-2026-41651
https://nvd.nist.gov/vuln/detail/CVE-2026-41651
https://github.com/PackageKit/PackageKit/blob/04057883189efa225a7c785591aa87cb299782f8/src/pk-transaction.c#L2273-L2277
https://github.com/PackageKit/PackageKit/blob/04057883189efa225a7c785591aa87cb299782f8/src/pk-transaction.c#L4036
https://github.com/PackageKit/PackageKit/blob/04057883189efa225a7c785591aa87cb299782f8/src/pk-transaction.c#L873-L882
https://github.com/PackageKit/PackageKit/security/advisories/GHSA-f55j-vvr9-69xv
https://github.security.telekom.com/2026/04/pack2theroot-linux-local-privilege-escalation.html
Affected packages
Red Hat:enterprise_linux:9::appstream
PackageKit
Package
Name
PackageKit
Purl
pkg:rpm/redhat/PackageKit
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-command-not-found
Package
Name
PackageKit-command-not-found
Purl
pkg:rpm/redhat/PackageKit-command-not-found
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-command-not-found-debuginfo
Package
Name
PackageKit-command-not-found-debuginfo
Purl
pkg:rpm/redhat/PackageKit-command-not-found-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-debuginfo
Package
Name
PackageKit-debuginfo
Purl
pkg:rpm/redhat/PackageKit-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-debugsource
Package
Name
PackageKit-debugsource
Purl
pkg:rpm/redhat/PackageKit-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib
Package
Name
PackageKit-glib
Purl
pkg:rpm/redhat/PackageKit-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib-debuginfo
Package
Name
PackageKit-glib-debuginfo
Purl
pkg:rpm/redhat/PackageKit-glib-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib-devel
Package
Name
PackageKit-glib-devel
Purl
pkg:rpm/redhat/PackageKit-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gstreamer-plugin
Package
Name
PackageKit-gstreamer-plugin
Purl
pkg:rpm/redhat/PackageKit-gstreamer-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gstreamer-plugin-debuginfo
Package
Name
PackageKit-gstreamer-plugin-debuginfo
Purl
pkg:rpm/redhat/PackageKit-gstreamer-plugin-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gtk3-module
Package
Name
PackageKit-gtk3-module
Purl
pkg:rpm/redhat/PackageKit-gtk3-module
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gtk3-module-debuginfo
Package
Name
PackageKit-gtk3-module-debuginfo
Purl
pkg:rpm/redhat/PackageKit-gtk3-module-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
Red Hat:enterprise_linux:9::crb
PackageKit
Package
Name
PackageKit
Purl
pkg:rpm/redhat/PackageKit
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-command-not-found
Package
Name
PackageKit-command-not-found
Purl
pkg:rpm/redhat/PackageKit-command-not-found
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-command-not-found-debuginfo
Package
Name
PackageKit-command-not-found-debuginfo
Purl
pkg:rpm/redhat/PackageKit-command-not-found-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-debuginfo
Package
Name
PackageKit-debuginfo
Purl
pkg:rpm/redhat/PackageKit-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-debugsource
Package
Name
PackageKit-debugsource
Purl
pkg:rpm/redhat/PackageKit-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib
Package
Name
PackageKit-glib
Purl
pkg:rpm/redhat/PackageKit-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib-debuginfo
Package
Name
PackageKit-glib-debuginfo
Purl
pkg:rpm/redhat/PackageKit-glib-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-glib-devel
Package
Name
PackageKit-glib-devel
Purl
pkg:rpm/redhat/PackageKit-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gstreamer-plugin
Package
Name
PackageKit-gstreamer-plugin
Purl
pkg:rpm/redhat/PackageKit-gstreamer-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gstreamer-plugin-debuginfo
Package
Name
PackageKit-gstreamer-plugin-debuginfo
Purl
pkg:rpm/redhat/PackageKit-gstreamer-plugin-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gtk3-module
Package
Name
PackageKit-gtk3-module
Purl
pkg:rpm/redhat/PackageKit-gtk3-module
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
PackageKit-gtk3-module-debuginfo
Package
Name
PackageKit-gtk3-module-debuginfo
Purl
pkg:rpm/redhat/PackageKit-gtk3-module-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.6-2.el9_7
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:11504.json"
RHSA-2026:11504 - OSV