
@rootsecdev https://www.sentinelone.com/vulnerability-database/cve-2024-5742/
Post summary
The tweet merely links to a SentinelOne vulnerability database entry for CVE‑2024‑5742 without providing additional details.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If Nano is killed while editing, a file it saves to an emergency file with the permissions of the running user provides a window of opportunity for attackers to escalate privileges through a malicious symlink.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
4 versions affected across 2 products

@rootsecdev https://www.sentinelone.com/vulnerability-database/cve-2024-5742/
Post summary
The tweet merely links to a SentinelOne vulnerability database entry for CVE‑2024‑5742 without providing additional details.
5 of 5 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| App | gnu | nano | - | - | - |
| OS | redhat | enterprise_linux | 6.0 | - | - |
| OS | redhat | enterprise_linux | 7.0 | - | - |
| OS | redhat | enterprise_linux | 8.0 | - | - |
| OS | redhat | enterprise_linux | 9.0 | - | - |