The polkit_backend_action_pool_init function in polkitbackend/polkitbackendactionpool.c in PolicyKit (aka polkit) before 0.113 might allow local users to gain privileges via duplicate action IDs in action descriptions.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.