Linux Kernel Use-after-free Vulnerability
Linux kernel contains a vulnerability that could allow an attacker to achieve local privilege escalation
Summary
Linux kernel contains a vulnerability that could allow an attacker to achieve local privilege escalation
Threat details
Introduction
Based on evidence of active exploitation, CISA have added CVE-2024-1086 to their known exploited vulnerabilities catalog. The vulnerability has a CVSSv3 score of 7.8 and can allow an attacker to achieve local privilege escalation.
Exploitation of CVE-2024-1086
CVE-2024-1086 was added to the US Cybersecurity and Infrastructure Security Agency's (CISA) Known Exploited Vulnerability Catalog based on evidence of exploitation in the wild.
Remediation advice
Affected organisations are encouraged to contact their relevant Linux IT suppliers and apply the relevant updates.
Definitive source of threat updates
Last edited: 31 May 2024 1:58 pm