Inclusion of Functionality from Untrusted Control Sphere
CVE-2024-52976
Summary
Inclusion of functionality from an untrusted control sphere in Elastic Agent subprocess, osqueryd, allows local attackers to execute arbitrary code via parameter injection. An attacker requires local access and the ability to modify osqueryd configurations.
- LOW
- LOCAL
- HIGH
- UNCHANGED
- NONE
- HIGH
- NONE
- NONE
CWE-829 - Inclusion of Functionality from Untrusted Control Sphere
The software imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.
References
Advisory Timeline
- Published