CVE-2024-45339
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Jan 28, 2025
Summary
CVE-2024-45339 is a vulnerability that allows an unprivileged attacker to manipulate log files by predicting their location in a widely-writable directory. By pre-creating a symbolic link to a sensitive file, an attacker can cause a privileged process to overwrite that file when it attempts to write to its log. This issue has been resolved by updating glog to exit the program when it encounters a pre-existing log file.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share