Main
Vulnerability Database
Exploits
ID:10479 - Exploit for Use-after-free in Linux kernel - CVE-2024-44946
ID:10479 - Exploit for Use-after-free in Linux kernel - CVE-2024-44946
Published: September 6, 2024
Vulnerability identifier: #VU96658
Vulnerability risk: Low
CVE-ID: CVE-2024-44946
CWE-ID: CWE-416
Exploitation vector: Local access
Vulnerable software:
Linux kernel
Linux kernel
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error within the kcm_sendmsg(), KCM_STATS_ADD(), sk->sk_write_space() and init_kcm_sock() functions in net/kcm/kcmsock.c. A local user can escalate privileges on the system.
Remediation
Install update from vendor's website.