ZeroHour

CVE-2024-6126

CVSS 3.1
3.2 low
EPSS
<1%p19
Published
()
Modified
Description

A flaw was found in the cockpit package. This flaw allows an authenticated user to kill any process when enabling the pam_env's user_readenv option, which leads to a denial of service (DoS) attack.

Weakness
CWE-400
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.