logo

CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw

ID: 68c0278e-1dee-5056-bb65-e1caa79caa00

STIX ID: report--68c0278e-1dee-5056-bb65-e1caa79caa00

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-05-30

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

CISA has added CVE-2024-1086 — a Linux kernel netfilter use-after-free vulnerability (CVSS 7.8) that can enable local privilege escalation to root and potential code execution — to its Known Exploited Vulnerabilities catalog after observing active exploitation. The notice also highlights CVE-2024-24919 (Check Point gateway information exposure, CVSS 7.5) and urges federal agencies to apply available fixes by June 20, 2024 to protect internet-connected gateways and Linux hosts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.