USN-7001-1: Linux kernel critical security update
The kernel update released for Ubuntu 24.04 LTS addresses a use-after-free vulnerability in the nf_tables component.
The kernel update released for Ubuntu 24.04 LTS addresses a use-after-free vulnerability in the nf_tables component.
Canonical has published security notice USN-7001-1 for Ubuntu 24.04 LTS (Noble) kernel packages. The update fixes CVE-2024-1086 (use-after-free) vulnerability in the netfilter nf_tables component.
A local attacker could escalate to root privileges. Public exploit code is available; the risk is high on multi-user servers or hosts running containers.
sudo apt update && sudo apt upgrade linux-image-genericneedrestartA signal handler race condition in the OpenSSH server carries a risk of unauthenticated RCE as root.
Bulk security patches for the OpenSSL, curl, sudo and systemd packages were published this month.
Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature.