Security Advisory

CVE-2024-48992

7.8
HIGH

Vulnerability Description

Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Ruby interpreter with an attacker-controlled RUBYLIB environment variable.
Published Date November 19, 2024
Official Source NIST NVD Advisory