A script injection vulnerability was identified in the Tuned package. The `instance_create()` D-Bus function can be called by locally logged-in users without authentication. This flaw allows a local non-privileged user to execute a D-Bus call with `script_pre` or `script_post` options that permit arbitrary scripts with their absolute paths to be passed. These user or attacker-controlled executable scripts or programs could then be executed by Tuned with root privileges that could allow attackers to local privilege escalation.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade tuned-utilsUpgrade tuned-profiles-atomicUpgrade tuned-profiles-mssqlUpgrade tunedUpgrade tuned-profiles-cpu-partitioningUpgrade tuned-profiles-postgresqlUpgrade tuned-profiles-spectrumscaleUpgrade tuned-profiles-oracleUpgrade tuned-profiles-realtimeUpgrade tuned-ppdUpgrade tuned-gtk | Dec 4, 2024 | Nov 26, 2024 |
| Debian | — | Upgrade tuned | Jul 27, 2026 | Jul 27, 2026 |
| Oracle_linux | — | Upgrade tuned-ppdUpgrade tuned-profiles-postgresqlUpgrade tuned-profiles-oracleUpgrade tuned-profiles-oci-recommendUpgrade tuned-gtkUpgrade tuned-profiles-spectrumscaleUpgrade tuned-utilsUpgrade tuned-profiles-cpu-partitioningUpgrade tuned-profiles-ociUpgrade tuned-profiles-mssqlUpgrade tuned-profiles-atomicUpgrade tuned | Dec 3, 2024 | Nov 26, 2024 |
| Redhat_linux | — | Upgrade tunedUpgrade tuned-profiles-realtimeUpgrade tuned-utilsUpgrade tuned-profiles-cpu-partitioningUpgrade tuned-profiles-atomicUpgrade tuned-profiles-spectrumscaleUpgrade tuned-profiles-sapUpgrade tuned-profiles-nfvUpgrade tuned-profiles-sap-hanaUpgrade tuned-profiles-nfv-guestUpgrade tuned-profiles-postgresqlUpgrade tuned-gtkUpgrade tuned-ppdUpgrade tuned-profiles-mssqlUpgrade tuned-profiles-oracleUpgrade tuned-profiles-nfv-host | Feb 10, 2025 | Nov 26, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub