CVE-2024-2313
2.8
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:L
Exploitability: 1.1 / Impact: 1.4
Source: security@ubuntu.com (Secondary)
Description
If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.
Affected (1)
References (4)
Source: security@ubuntu.com
Third Party Advisory
Source: security@ubuntu.com
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Timeline
No history available yet.