cve/2024/CVE-2024-48992.md
2025-09-29 16:08:36 +00:00

758 B

CVE-2024-48992

Description

Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Ruby interpreter with an attacker-controlled RUBYLIB environment variable.

POC

Reference

No PoCs from references.

Github