CVE-2024-1488 is a high-severity vulnerability in Unbound, affecting Fedora Project and Red Hat products, stemming from incorrect default permissions that allow any non-unbound process to modify its runtime configuration. An unprivileged attacker can exploit this by connecting to port 8953 on localhost, enabling them to alter forwarders, track DNS queries, or disrupt DNS resolution entirely. With a CVSS score of 7.3, this local attack requires low privileges and has high impact on confidentiality, integrity, and availability. There is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.19.1-2.fc40CPE matchmatch criteria | cpe:2.3:a:fedoraproject:unbound:*:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:a:redhat:codeready_linux_builder:9.0:*:*:*:*:*:*:* | ||
9.2CPE matchmatch criteria | cpe:2.3:a:redhat:codeready_linux_builder_eus:9.2:*:*:*:*:*:*:* | ||
9.4CPE matchmatch criteria | cpe:2.3:a:redhat:codeready_linux_builder_eus:9.4:*:*:*:*:*:*:* | ||
9.0_ppc64leCPE matchmatch criteria | cpe:2.3:a:redhat:codeready_linux_builder_eus_for_power_little_endian:9.0_ppc64le:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.