CVE-2024-8038

CVSS 3.1 Score 7.9 of 10 (high)

Details

Published Oct 2, 2024
Updated: Oct 4, 2024
CWE ID 420

Summary

CVE-2024-8038 introduces a local denial of service vulnerability in juju's introspection component. An abstract UNIX domain socket, which is unsecured, is accessible to network namespace users without authentication. Attackers can exploit this vulnerability to cause disruptions and prevent the targeted system from functioning properly. This issue poses a risk to the availability and reliability of systems utilizing juju's introspection feature.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share