https://seclists.org/oss-sec/2024/q3/78: Landlock news #4
Published Jul 16, 2024
·Updated
Affected Software
16 affected components
Tukaani XZ Utils=5.6.2
Netblue30 Firejail=0.9.74
Util-linux setpriv=2.40
Boustrophedon extrasafe=0.4.0
FrTerstappen bevy_mod_lockdown
Cloud Hypervisor Cloud Hypervisor
Gnoack Ukuleleweb
Ngergs websrv=3.2.0
Capnspacehook egress-eddie=0.5.0
Oisín Suricata=7.0.0
YRutschle sslh=2.1.0
Pufferfish wireproxy=1.0.8
Emilua Emilua=0.5.0
Paritytech Polkadot
XZ Utils XZ Utils>5.6.0<=5.6.2
Arch Linux Pacman=7.0.0
Frequently Asked Questions
1
What is the severity of CVE-2024-XXXX?
The severity of CVE-2024-XXXX is classified as critical due to the potential for remote code execution.
2
How do I fix CVE-2024-XXXX?
To fix CVE-2024-XXXX, update to the latest version of the affected software as provided by the vendor.
3
What systems are affected by CVE-2024-XXXX?
CVE-2024-XXXX affects systems running Tukaani XZ Utils, Netblue30 Firejail, and other related utilities.
4
What are the potential impacts of CVE-2024-XXXX?
The potential impacts of CVE-2024-XXXX include unauthorized access and execution of arbitrary code by an attacker.
5
Is there a workaround for CVE-2024-XXXX?
Yes, disabling the affected features temporarily can serve as a workaround until a patch is applied.