A script injection vulnerability was identified in the Tuned package. The `instance_create()` D-Bus function can be called by locally logged-in users without authentication. This flaw allows a local non-privileged user to execute a D-Bus call with `script_pre` or `script_post` options that permit arbitrary scripts with their absolute paths to be passed. These user or attacker-controlled executable scripts or programs could then be executed by Tuned with root privileges that could allow attackers to local privilege escalation.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade tuned-gtkUpgrade tuned-ppdUpgrade tuned-profiles-postgresqlUpgrade tuned-profiles-mssqlUpgrade tuned-profiles-atomicUpgrade tuned-profiles-realtimeUpgrade tuned-profiles-oracleUpgrade tunedUpgrade tuned-profiles-cpu-partitioningUpgrade tuned-profiles-spectrumscaleUpgrade tuned-utils | Dec 4, 2024 | Nov 26, 2024 |
| Debian | — | Upgrade tuned | Jul 27, 2026 | Jul 27, 2026 |
| Oracle_linux | — | Upgrade tuned-profiles-atomicUpgrade tuned-utilsUpgrade tuned-profiles-spectrumscaleUpgrade tuned-profiles-cpu-partitioningUpgrade tuned-profiles-mssqlUpgrade tunedUpgrade tuned-profiles-ociUpgrade tuned-gtkUpgrade tuned-profiles-oci-recommendUpgrade tuned-profiles-postgresqlUpgrade tuned-ppdUpgrade tuned-profiles-oracle | Dec 3, 2024 | Nov 26, 2024 |
| Redhat_linux | — | Upgrade tuned-profiles-nfvUpgrade tuned-profiles-sap-hanaUpgrade tuned-ppdUpgrade tuned-profiles-postgresqlUpgrade tuned-profiles-oracleUpgrade tuned-profiles-nfv-hostUpgrade tuned-profiles-mssqlUpgrade tuned-profiles-nfv-guestUpgrade tuned-gtkUpgrade tuned-utilsUpgrade tuned-profiles-cpu-partitioningUpgrade tunedUpgrade tuned-profiles-spectrumscaleUpgrade tuned-profiles-sapUpgrade tuned-profiles-realtimeUpgrade tuned-profiles-atomic | Feb 10, 2025 | Nov 26, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub