CVE-2025-67859 - Polkit Authorization Check can be Bypassed in the TLP power daemon
CVE ID : CVE-2025-67859
Published : Jan. 14, 2026, 11:34 a.m. | 23 minutes ago
Description : A Improper Authentication vulnerability in TLP allows local users to arbitrarily control the power profile in use as well as the daemon’s log settings.This issue affects TLP: from 1.9 before 1.9.1.
Severity: 5.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 14, 2026, 11:34 a.m. | 23 minutes ago
Description : A Improper Authentication vulnerability in TLP allows local users to arbitrarily control the power profile in use as well as the daemon’s log settings.This issue affects TLP: from 1.9 before 1.9.1.
Severity: 5.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...