Skip to main content

Linux Kernel Use-after-free Vulnerability

Linux kernel contains a vulnerability that could allow an attacker to achieve local privilege escalation

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

Linux kernel contains a vulnerability that could allow an attacker to achieve local privilege escalation


Affected platforms

The following platforms are known to be affected:

Threat details

Introduction

Based on evidence of active exploitation, CISA have added CVE-2024-1086 to their known exploited vulnerabilities catalog. The vulnerability has a CVSSv3 score of 7.8 and can allow an attacker to achieve local privilege escalation.

Exploitation of CVE-2024-1086

CVE-2024-1086 was added to the US Cybersecurity and Infrastructure Security Agency's (CISA) Known Exploited Vulnerability Catalog based on evidence of exploitation in the wild.


Remediation advice

Affected organisations are encouraged to contact their relevant Linux IT suppliers and apply the relevant updates.



Last edited: 31 May 2024 1:58 pm