What happened
Linux kernel contains a use-after-free vulnerability in the netfilter: nf_tables component that allows an attacker to achieve local privilege escalation.
Affected versions
Kernel: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
PoC-in-GitHub · Notselwyn/CVE-2024-1086Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 99.4% in KernelCTF images.★ 2457Notselwyn2024-03-20CandidatePoC-in-GitHub · Alicey0719/docker-POC_CVE-2024-1086★ 3Alicey07192024-04-03CandidatePoC-in-GitHub · CCIEVoice2009/CVE-2024-1086★ 0CCIEVoice20092024-04-30CandidatePoC-in-GitHub · kevcooper/CVE-2024-1086-checker★ 2kevcooper2024-06-03CandidatePoC-in-GitHub · feely666/CVE-2024-1086★ 0feely6662024-06-10CandidatePoC-in-GitHub · xzx482/CVE-2024-1086★ 0xzx4822024-07-04CandidatePoC-in-GitHub · LLfam/CVE-2024-1086★ 22LLfam2024-12-16CandidatePoC-in-GitHub · karim4353/CVE-2024-1086-ExploitEducational, non-functional Linux kernel exploit template for CVE-2024-1086 — lab-only security research and teaching (use in controlled VMs only).★ 0karim43532025-09-04CandidatePoC-in-GitHub · ndt2111200203/CVE-2024-1086★ 0ndt21112002032025-12-09CandidatePoC-in-GitHub · sandesh9978/cve-2024-1086-lpeTechnical analysis and proof-of-concept for CVE-2024-1086, a Linux kernel nf_tables use-after-free vulnerability leading to local privilege escalation. Includes vulnerability breakdown, affected versions, exploitation methodology, and mitigation guidance for research and educational purposes.★ 1sandesh99782026-03-04CandidatePoC-in-GitHub · vettrivel007/CVE-2024-1086★ 0vettrivel0072026-03-30CandidatePoC-in-GitHub · ClaraSto/CVE-2024-1086_Ausarbeitung★ 0ClaraSto2026-04-21CandidatePoC-in-GitHub · b1nhack/CVE-2024-1086★ 0b1nhack2026-05-31CandidatePoC-in-GitHub · Luisbuilds-data/cve-2024-1086-writeup★ 0Luisbuilds-data2026-06-21CandidatePoC-in-GitHub · JHarv613/CVE_2024_1086_vulnerability_checkCVE-2024-1086 vulnerability★ 0JHarv6132026-06-29CandidatePoC-in-GitHub · dopaminauta/onetwoseven-writeupHTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root★ 1dopaminauta2026-08-06CandidatePoC-in-GitHub · Vedantk6403/KOOBE-GuardA research-based defensive framework for the Linux kernel. KOOBE-Guard utilizes Kprobes for active temporal mitigation to neutralize heap-based double-free vulnerabilities (CVE-2024-1086) with zero RAM overhead.★ 0Vedantk64032026-08-17CandidateSource timeline
Discovered through CISA Known Exploited VulnerabilitiesView source ↗
Added to CISA Known Exploited Vulnerabilities catalogView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.