Needrestart is a system utility for Linux that detects and manages service restarts after package updates, with its vulnerability footprint centered on the single needrestart product and characterized by path-search issues, race conditions, and OS command-injection weaknesses that reflect the tool's privileged execution model and interaction with the system shell. These weakness classes underscore the core risk surface of a utility that operates at the intersection of package management, privilege escalation, and system command invocation. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Needrestart Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-48990HIGH Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Python interpreter with an | Nov 19, 2024 | 7.8 | 48 | NO | YES |
CVE-2024-11003HIGH Qualys discovered that needrestart, before version 3.8, passes unsanitized data to a library (Modules::ScanDeps) which expects safe input. This could allow a local attacker to exec | Nov 19, 2024 | 7.8 | 30 | NO | NO |
CVE-2024-48992HIGH Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Ruby interpreter with an a | Nov 19, 2024 | 7.8 | 28 | NO | NO |
CVE-2024-48991HIGH Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by winning a race condition and tricking needrestart into running t | Nov 19, 2024 | 7.8 | 27 | NO | NO |
CVE-2022-30688HIGH needrestart 0.8 through 3.5 before 3.6 is prone to local privilege escalation. Regexes to detect the Perl, Python, and Ruby interpreters are not anchored, allowing a local user to | May 17, 2022 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Needrestart Project.
Media articles that mention a CVE ID that affects a product developed by Needrestart Project — matched by CVE ID, not by vendor name.