RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw
Post by: ixsky on
CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a security flaw impacting the Linux kernel to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
Tracked as CVE-2024-1086 (CVSS score: 7.8), the high-severity issue relates to a use-after-free bug in the netfilter component that permits a local attacker to elevate privileges

Source: CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw (https://thehackernews.com/2024/05/cisa-alerts-federal-agencies-to-patch.html)