CVE-2024-11003

CVE Information
CVE ID
CVE-2024-11003
Severity
HIGH CVSS 7.8
Publish Date
2024-11-19
Description

Qualys discovered that needrestart, before version 3.8, passes unsanitized data to a library (Modules::ScanDeps) which expects safe input. This could allow a local attacker to execute arbitrary shell commands. Please see the related CVE-2024-10224 in Modules::ScanDeps.

Collection Date
2026-01-13
Impact Summary
Affected Hosts 2
Related Incidents 0
Related Alerts 0
Affected Hosts (2)
Hostname OS Type Severity Total CVEs
inbridge-42 LINUX CRITICAL 142
in-bridge-40 LINUX CRITICAL 392