CVE-2024-48990: High severity debian/needrestart vulnerability
Last updated 20 November 2024
Other sources
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Python interpreter with an attacker-controlled PYTHONPATH environment variable.
— NVD
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Remediation
Mitigation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-48990?
CVE-2024-48990 is a critical vulnerability that allows local attackers to execute arbitrary code as root.
How do I fix CVE-2024-48990?
To fix CVE-2024-48990, upgrade to needrestart version 3.8 or newer.
Who is affected by CVE-2024-48990?
CVE-2024-48990 affects needrestart versions prior to 3.8 on Debian systems.
What type of attack does CVE-2024-48990 involve?
CVE-2024-48990 involves local privilege escalation by tricking needrestart into executing an attacker-controlled Python interpreter.
When was CVE-2024-48990 discovered?
CVE-2024-48990 was disclosed on 20 November 2024 by Qualys.