• caglararli@hotmail.com
  • 05386281520

CVE-2024-22017 | Node.js up to 20.11.0 io_uring setuid privilege dropping / lowering errors

Çağlar Arlı      -    14 Views

CVE-2024-22017 | Node.js up to 20.11.0 io_uring setuid privilege dropping / lowering errors

A vulnerability was found in Node.js up to 20.11.0. It has been classified as problematic. Affected is the function setuid of the component io_uring Handler. The manipulation leads to privilege dropping / lowering errors. This vulnerability is traded as CVE-2024-22017. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected component.