CVE-2024-48991 is a race condition vulnerability affecting needrestart, allowing local attackers to achieve arbitrary code execution as root by manipulating the Python interpreter path. This vulnerability carries a high CVSS score of 7.8, indicating a local attack vector with low complexity, leading to high impact on confidentiality, integrity, and availability. While there is no evidence of active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community discussion and media attention, suggesting awareness among security researchers. Users of needrestart should update to version 3.8 or later to mitigate this risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.8CPE matchmatch criteria | cpe:2.3:a:needrestart_project:needrestart:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.