Security Advisory
CVE-2024-48992
7.8
HIGH
Vulnerability Description
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Ruby interpreter with an attacker-controlled RUBYLIB environment variable.
Published Date
November 19, 2024
Official Source
NIST NVD Advisory