← Back

CVE-2024-6984

nvd nist
Published: Jul 29, 2024Modified: Jun 17, 2026

JSON object

Loading...
3.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Exploitability: 2.0 / Impact: 1.4
Source: NVD

Description

An issue was discovered in Juju that resulted in the leak of the sensitive context ID, which allows a local unprivileged attacker to access other sensitive data or relation accessible to the local charm.

Affected (5)

Products: Canonical: Juju
1 product
Juju
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
From 2.9 to 2.9.50
From 3.1 to 3.1.9
From 3.3 to 3.3.6
From 3.4 to 3.4.5
From 3.5 to 3.5.3

References (6)

Source: security@ubuntu.com
ExploitVendor Advisory
Source: security@ubuntu.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.