Arbitrary Code Execution Vulnerability in Elastic Agent from Elastic
CVE-2024-52976
4.4MEDIUM
What is CVE-2024-52976?
A vulnerability in Elastic Agent allows local attackers to exploit functionality from an untrusted control sphere within the osqueryd subprocess. By manipulating osqueryd configurations, attackers can execute arbitrary code, posing significant risks to system security. This vulnerability highlights the importance of securing local access and promptly applying updates to affected versions to mitigate potential exploitation.
Affected Version(s)
Elastic Agent 7.0.0 <= 7.17.24
Elastic Agent 8.0.0 <= 8.15.3