GHSA-px7f-qj7m-m4v6 · Severity: low — wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape...
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover.
Conclusion & alert: CVE-2024-28085 is rated Exploit Available (51.4/100): CVSS Low severity, with medium exploitation likelihood (EPSS 2.24%). Core evidence: 3 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ | |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ | |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 10.93% | 2.24% | -8.69% |
| 2 | 2026-06-02 | 11.20% | 10.93% | -0.26% |
| 3 | 2026-05-22 | — | 11.20% | — |
Full EPSS history (48 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 3.3 | 3.1 | LOW |
|
1.8 | 1.4 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
GHSA-px7f-qj7m-m4v6 · Severity: low — wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape...
| vendor | priority | summary | link |
|---|---|---|---|
alpine
|
— | CVE-2024-28085: 1 source package rows (util-linux); 20 state rows across 5 repos (3.19-main, 3.20-main, 3.21-main, 3.22-main, edge-main); fixed 4, open 16. | https://security.alpinelinux.org/vuln/CVE-2024-28085 |
debian
|
not yet assigned | CVE-2024-28085 not yet assigned priority: Debian including 1 source packages (util-linux), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2024-28085 |
redhat
|
low | — | https://access.redhat.com/security/cve/CVE-2024-28085 |
suse
|
high | CVE-2024-28085 severity important: SUSE including 873 source package names (0.0.17-1.1:libuuid1-2.39.3-150600.4.3.1, 0.1.6-1.2:libuuid1-2.39.3-150600.4.3.1, …), 3239 product×package rows across 363 product lines (Container bci/bci-init, Container bci/bci-sle15-kernel-module-devel, … (363 product lines)): Fixed 3038, Known Affected 200, Known Not Affected 1. | https://www.suse.com/security/cve/CVE-2024-28085/ |
ubuntu
|
medium | CVE-2024-28085 medium priority: Ubuntu including 1 source packages (util-linux), 11 status rows across 11 suites (bionic, focal, jammy, mantic, noble, oracular, plucky, questing, trusty, upstream, xenial): released 7, needs-triage 4. | https://ubuntu.com/security/CVE-2024-28085 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| kernel | util-linux | >= 2.24, < 2.39.4 | cpe:2.3:a:kernel:util-linux:*:*:*:*:*:*:*:* |
| debian | debian_linux | 10.0 | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* |