CVE-2024-1086

HIGH KEV RANSOMWARE LAB

Linux Kernel < 5.15.149 - Use After Free

Title source: rule

Description

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.

Exploits (12)

nomisec WORKING POC 2,433 stars
by Notselwyn · poc
https://github.com/Notselwyn/CVE-2024-1086
nomisec WORKING POC 21 stars
by LLfam · local
https://github.com/LLfam/CVE-2024-1086
nomisec SCANNER 2 stars
by kevcooper · poc
https://github.com/kevcooper/CVE-2024-1086-checker
nomisec WORKING POC 2 stars
by Alicey0719 · poc
https://github.com/Alicey0719/docker-POC_CVE-2024-1086
nomisec NO CODE
by ClaraSto · poc
https://github.com/ClaraSto/CVE-2024-1086_Ausarbeitung
nomisec WORKING POC
by vettrivel007 · local
https://github.com/vettrivel007/CVE-2024-1086
nomisec WRITEUP
by sandesh9978 · poc
https://github.com/sandesh9978/cve-2024-1086-lpe
nomisec WORKING POC
by ndt2111200203 · local
https://github.com/ndt2111200203/CVE-2024-1086
nomisec STUB
by karim4353 · local
https://github.com/karim4353/CVE-2024-1086-Exploit
nomisec WORKING POC
by xzx482 · local
https://github.com/xzx482/CVE-2024-1086
nomisec STUB
by feely666 · poc
https://github.com/feely666/CVE-2024-1086
nomisec WORKING POC
by CCIEVoice2009 · local
https://github.com/CCIEVoice2009/CVE-2024-1086

Scores

CVSS v3 7.8
EPSS 0.8675
EPSS Percentile 99.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2024-05-30
VulnCheck KEV 2024-05-30
InTheWild.io 2024-05-30
ENISA EUVD EUVD-2024-16861
Ransomware Use Confirmed
CWE
CWE-416
Status published
Products (13)
debian/debian_linux 10.0
fedoraproject/fedora 39
linux/linux_kernel 6.8 rc1
linux/linux_kernel 3.15 - 5.15.149
netapp/500f_firmware
netapp/a250_firmware
netapp/c250_firmware
redhat/enterprise_linux_desktop 7.0
redhat/enterprise_linux_for_ibm_z_systems 7.0_s390x
redhat/enterprise_linux_for_power_big_endian 7.0_ppc64
... and 3 more
Published Jan 31, 2024
KEV Added May 30, 2024
Tracked Since Feb 18, 2026