Vulnerable juju introspection abstract UNIX domain socket. An abstract UNIX domain socket responsible for introspection is available without authentication locally to network namespace users. This enables denial of service attacks.
References
Link | Resource |
---|---|
https://github.com/juju/juju/security/advisories/GHSA-xwgj-vpm9-q2rq | Patch Vendor Advisory |
https://www.cve.org/CVERecord?id=CVE-2024-8038 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
26 Aug 2025, 17:44
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/juju/juju/security/advisories/GHSA-xwgj-vpm9-q2rq - Patch, Vendor Advisory | |
References | () https://www.cve.org/CVERecord?id=CVE-2024-8038 - Third Party Advisory | |
CWE | NVD-CWE-noinfo | |
First Time |
Canonical
Canonical juju |
|
CPE | cpe:2.3:a:canonical:juju:*:*:*:*:*:*:*:* |
04 Oct 2024, 13:50
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
02 Oct 2024, 11:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-02 11:15
Updated : 2025-08-26 17:44
NVD link : CVE-2024-8038
Mitre link : CVE-2024-8038
CVE.ORG link : CVE-2024-8038
JSON object : View
Products Affected
canonical
- juju
CWE