CVE-2024-8996 Information
Sep 26, 2024
cve
Description
Unquoted Search Path or Element vulnerability in Grafana Agent (Flow mode) on Windows allows Privilege Escalation from Local User to SYSTEM This issue affects Agent Flow: before 0.43.2
Reference
https://grafana.com/security/security-advisories/cve-2024-8996/ https://grafana.com/blog/2024/09/25/grafana-alloy-and-grafana-agent-flow-security-release-high-severity-fix-for-cve-2024-8975-and-cve-2024-8996/ https://github.com/grafana/agent/releases/tag/v0.43.2
Share on: