Beveiligingsadvies
CVE-2024-48992
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Ruby interpreter with an attacker-controlled RUBYLIB environment variable.