Netskope Threat Labs

CVE-2009-1185

ATP Sandbox Adv. Heuristics

This detection identifies exploitation attempts targeting CVE-2009-1185, which has a UNKNOWN severity rating. udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to gain privileges by sending a NETLINK message from user space.

First seen
October 2024
Last seen
September 2026
Alert Name
Android.Exploit.CVE-2009-1185
Linux.Exploit.CVE-2009-1185
MacOS.Exploit.CVE-2009-1185
Win32.Exploit.CVE-2009-1185