Format string vulnerability was discovered in the PolicyKit grant helper. User may specify password with formatting sequences and cause polkit-grant-helper to crash or bypass authentication. Upstream bug report with proposed patch: https://bugs.freedesktop.org/show_bug.cgi?id=15295 Original report in Ubuntu BTS: https://bugs.launchpad.net/ubuntu/+source/policykit/+bug/205037
PolicyKit-0.6-2.fc8 has been submitted as an update for Fedora 8
PolicyKit-0.6-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
This issue was addressed in: Fedora: https://admin.fedoraproject.org/updates/F8/FEDORA-2008-2987