Hi,
The following vulnerability was published for policykit-1.
CVE-2026-85498[0]:
| Regression in CVE-2026-4897 fix (polkit read_cookie()) - stack buffer
| underflow
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.
For further information see:
[0] https://security-tracker.debian.org/tracker/CVE-2026-85498
https://www.cve.org/CVERecord?id=CVE-2026-85498
[1] https://github.com/polkit-org/polkit/pull/702
[2] https://github.com/polkit-org/polkit/commit/eea172967848bb4c5a407329f40c0e45de0d187e
Regards,
Salvatore