CVE-2024-8038
CVSS 3.1 Score 7.9 of 10 (high)
Details
Published Oct 2, 2024
Updated: Oct 4, 2024
CWE ID 420
Summary
CVE-2024-8038 introduces a local denial of service vulnerability in juju's introspection component. An abstract UNIX domain socket, which is unsecured, is accessible to network namespace users without authentication. Attackers can exploit this vulnerability to cause disruptions and prevent the targeted system from functioning properly. This issue poses a risk to the availability and reliability of systems utilizing juju's introspection feature.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Canonical System