CVE-2024-1086 - Linux Kernel Use-After-Free Vulnerability
项目:Linux
产品:Kernel
添加日期:2024-05-30到期日:2024-06-20
漏洞名称
Linux Kernel Use-After-Free Vulnerability
描述
Linux kernel contains a use-after-free vulnerability in the netfilter: nf_tables component that allows an attacker to achieve local privilege escalation.
已知用于勒索软件活动吗?
Known
采集行动
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
其他说明
This vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please see: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f342de4e2f33e0e39165d8639387aa6c19dff660
https://nvd.nist.gov/vuln/detail/CVE-2024-1086
相关新闻文章
CISA: High-severity Linux flaw now exploited by ransomware gangsOctober 31, 2025
CISA warns of actively exploited Linux privilege elevation flawJune 1, 2024