A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.
https://www.greynoise.io/blog/unmasking-cisas-hidden-kev-ransomware-updates
https://securelist.com/vulnerabilities-and-exploits-in-q4-2024/115761/
https://thehackernews.com/2024/05/cisa-alerts-federal-agencies-to-patch.html
https://github.com/keenglomerate/bastion_ai
https://github.com/crimson-crawler/python-sdk
https://github.com/crimson-crawler/typescript-sdk
https://github.com/nogunix/janus
https://github.com/OleksandrBlack/cve_centos
https://github.com/HardZionL/PatchWeaver
https://github.com/cybergirlApurva/security-automation-toolkit
https://github.com/JHarv613/CVE_2024_1086_vulnerability_check
https://github.com/Luisbuilds-data/cve-2024-1086-writeup
https://github.com/toughIQ/rhsda-mcp
https://github.com/velvetway/bdu-fstec-mcp
https://github.com/ayala-shtreicher/cve-mcp-server
https://github.com/c-sprinks/bitlocker-bypass-research
https://github.com/0xrpheus/wraith
https://github.com/comandre-ex/cve-notifier
https://github.com/ruihongw/AutoCVE_Test_System
https://github.com/manuu456/CVEarity
https://github.com/nanhang-950/Kernel-Exploit
https://github.com/Leegreen305/CVE-Threat-Intelligence-Tracker
https://github.com/Su1ph3r/Cepheus
https://github.com/zmh2000829/cve-patch-analyzer
https://github.com/spanwich/sel4-ics-gateway-demo
https://github.com/LLfam/CVE-2024-1086
https://github.com/lykorix/CVE-Research
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-1086
https://news.ycombinator.com/item?id=39828424
https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html
https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660
https://github.com/Notselwyn/CVE-2024-1086
http://www.openwall.com/lists/oss-security/2024/04/17/5
http://www.openwall.com/lists/oss-security/2024/04/15/2
http://www.openwall.com/lists/oss-security/2024/04/14/1