Rapid7

vulnerability

Oracle Linux: CVE-2014-8119: ELSA-2015-2248: netcf security, bug fix, and enhancement update (MODERATE)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Dec 29, 2017
Added
Oct 16, 2024
Modified
Jan 7, 2025

Description

The find_ifcfg_path function in netcf before 0.2.7 might allow attackers to cause a denial of service (application crash) via vectors involving augeas path expressions.

Solutions

oracle-linux-upgrade-netcforacle-linux-upgrade-netcf-develoracle-linux-upgrade-netcf-libs
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.