Security Advisory

CVE-2024-24890

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-25 07:09:25
Last updated 2024-08-12 18:44:27
Assigner openEuler
State PUBLISHED

Description

Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in openEuler gala-gopher on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/gala-gopher/blob/master/src/probes/extends/ebpf.Probe/src/ioprobe/ioprobe.C. This issue affects gala-gopher: through 1.0.2.