CVE-2024-1086
KEV
🔴 Łataj teraz
Luka use-after-free w komponencie nf_tables jądra Linux umożliwia eskalację uprawnień lokalnych.
CVSS
7.8
EPSS
28.1%
Exploit
weaponized
Vendor
netapp
Opis źródłowy (NVD)
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.
exploit privilege-escalation
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.8 |
| CISA KEV (aktywnie wykorzystywane) | Tak |
| FIRST EPSS (prawdopodobieństwo exploita) | 28.1% |
| Opublikowano (NVD) | 2024-01-31 13:15:10 UTC |
| Ostatnia modyfikacja (NVD) | 2026-08-07 19:59:58 UTC |
Referencje
- http://www.openwall.com/lists/oss-security/2024/04/10/22 (cve-coordination@google.com) [Mailing List, Patch]
- http://www.openwall.com/lists/oss-security/2024/04/10/23 (cve-coordination@google.com) [Mailing List, Patch]
- http://www.openwall.com/lists/oss-security/2024/04/14/1 (cve-coordination@google.com) [Exploit, Mailing List]
- http://www.openwall.com/lists/oss-security/2024/04/15/2 (cve-coordination@google.com) [Mailing List]
- http://www.openwall.com/lists/oss-security/2024/04/17/5 (cve-coordination@google.com) [Exploit, Mailing List]
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f342de4e2f33e0e39165d8639387aa6c19dff660 (cve-coordination@google.com) [Patch]
- https://github.com/Notselwyn/CVE-2024-1086 (cve-coordination@google.com) [Exploit, Third Party Advisory]
- https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660 (cve-coordination@google.com) [Patch]
- https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html (cve-coordination@google.com) [Mailing List]
- https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html (cve-coordination@google.com) [Mailing List]
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7LSPIOMIJYTLZB6QKPQVVAYSUETUWKPF/ (cve-coordination@google.com) [Mailing List]
- https://news.ycombinator.com/item?id=39828424 (cve-coordination@google.com) [Issue Tracking]
- https://pwning.tech/nftables/ (cve-coordination@google.com) [Exploit, Technical Description, Third Party Advisory]
- https://security.netapp.com/advisory/ntap-20240614-0009/ (cve-coordination@google.com) [Third Party Advisory]
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-1086 (134c704f-9b21-4f2e-91b3-4a467353bcc0) [US Government Resource]