menu
techminis

A naukri.com initiative

google-web-stories
source image

Ubuntu

1M

read

415

img
dot

Image Credit: Ubuntu

Needrestart local privilege escalation vulnerability fixes available

  • Qualys discovered local privilege escalation vulnerabilities in the needrestart package (CVE-2024-48990, CVE-2024-48991, CVE-2024-48992, and CVE-2024-11003) and the libmodule-scandeps-perl package (CVE-2024-10224).
  • Canonical has released updates for the needrestart and libmodule-scandeps-perl packages for all Ubuntu releases, including Ubuntu Server images since 21.04.
  • The vulnerabilities allow a local attacker to gain root privileges by manipulating environment variables and exploiting a time-of-check time-of-use race condition.
  • Affected users are advised to update their packages as soon as possible to mitigate the risks.

Read Full Article

like

24 Likes

For uninterrupted reading, download the app