CVE-2024-5290HIGHCVSS 7.8≥ 2:2.10-15, < 2:2.10-21ubuntu0.1·≥ 2:2.9.0-21build1, < 2:2.10-6ubuntu2.1+4 more2024-08-07
CVE-2024-5290 [HIGH] CWE-427 CVE-2024-5290: An issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared object
An issue was discovered in Ubuntu wpa_supplicant that resulted in loading of arbitrary shared objects, which allows a local unprivileged attacker to escalate privileges to the user that wpa_supplicant runs as (usually root).
Membership in the netdev group or access to the dbus interface of wpa_supplicant allow an unprivileged user to specify an arbitr
nvdosv