vulnerability

Amazon Linux AMI 2: CVE-2024-24980: Security patch for microcode_ctl (ALAS-2024-2682)

Severity
4
CVSS
(AV:L/AC:H/Au:M/C:P/I:C/A:N)
Published
Aug 14, 2024
Added
Nov 4, 2024
Modified
Feb 18, 2025

Description

Protection mechanism failure in some 3rd, 4th, and 5th Generation Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

Solutions

amazon-linux-ami-2-upgrade-microcode_ctlamazon-linux-ami-2-upgrade-microcode_ctl-debuginfo
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.