Known vulnerabilities in needrestart
Vendor:
liske (Thomas Liske)
Software:
needrestart
Software CPE:
cpe:2.3:a:liske:needrestart:*:*:*:*:*:*:*:*
Website:
https://github.com/liske/
Total vulnerabilities:
5
Public exploits:
3
Known exploited (KEV):
1
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU100986 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2024-11003 |
CWE-78 | Low | 3.8 | 27.11.2024 |
SB2024112721 SB2024112724 SB2024112725 and 8 more |
||
| #VU100984 - Improper Control of Generation of Code ('Code Injection') CVE-2024-48992 |
CWE-94 | Low | 3.8 | 27.11.2024 |
SB2024112721 SB2024112724 SB2024112725 and 8 more |
||
| #VU100983 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2024-48991 |
CWE-362 | Low | 3.8 | 27.11.2024 |
SB2024112721 SB2024112724 SB2024112725 and 8 more |
||
| #VU100982 - Improper Control of Generation of Code ('Code Injection') CVE-2024-48990 |
CWE-94 | Low | 3.8 | 27.11.2024 |
SB2024112721 SB2024112724 SB2024112725 and 8 more |
||
| #VU63356 - Improper input validation CVE-2022-30688 |
CWE-20 | Low | 3.6 | 18.05.2022 |
SB2022051807 SB2022051828 SB2022051835 and 2 more |