CVE-2024-6984
EUVD-2024-4796529.07.2024, 14:15
An issue was discovered in Juju that resulted in the leak of the sensitive context ID, which allows a local unprivileged attacker to access other sensitive data or relation accessible to the local charm.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| canonical | juju | 2.9 ≤ 𝑥 < 2.9.50 |
| canonical | juju | 3.1 ≤ 𝑥 < 3.1.9 |
| canonical | juju | 3.3 ≤ 𝑥 < 3.3.6 |
| canonical | juju | 3.4 ≤ 𝑥 < 3.4.5 |
| canonical | juju | 3.5 ≤ 𝑥 < 3.5.3 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| canonical | juju | 2.9 ≤ 𝑥 < 2.9.50 | ADP |
| canonical | juju | 3.1 ≤ 𝑥 < 3.1.9 | ADP |
| canonical | juju | 3.3 ≤ 𝑥 < 3.3.5 | ADP |
| canonical | juju | 3.4 ≤ 𝑥 < 3.4.5 | ADP |
| canonical | juju | 3.5 ≤ 𝑥 < 3.5.3 | ADP |
Common Weakness Enumeration
References