peter bassill · operator
$ cve CVE-2024-1086 JSON

CVE-2024-1086 KEV

7.8
HIGH · CVSS 3.1 · EPSS 28.1% (pctl 98)

Patch first

On CISA KEV — known exploited in the wild, due 2024-06-20.

Description

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS28.06% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-416
On CISA KEVyes — remediate by 2024-06-20
Public exploitnone known
Published2024-01-31
Last modified2026-08-07

CISA KEV

NameLinux Kernel Use-After-Free Vulnerability
Added2024-05-30
Due2024-06-20
Vendor / productLinux / Kernel
Ransomware useknown

Affected (27)

VendorProduct
debiandebian linux
fedoraprojectfedora
linuxlinux kernel
netapp500f
netapp500f firmware
netappa250
netappa250 firmware
netappbootstrap os
netappc250
netappc250 firmware
netapph300s
netapph300s firmware
netapph410c
netapph410c firmware
netapph410s
netapph410s firmware
netapph500s
netapph500s firmware
netapph700s
netapph700s firmware
netapphci compute node
redhatenterprise linux desktop
redhatenterprise linux for ibm z systems
redhatenterprise linux for power big endian
redhatenterprise linux for power little endian
redhatenterprise linux server
redhatenterprise linux workstation

References

→ the Explorer  ·  watch your stack  ·  NVD