← Back

CVE-2024-2313

nvd nist
Published: Mar 10, 2024Modified: Jun 17, 2026

JSON object

Loading...
2.8
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:L
Exploitability: 1.1 / Impact: 1.4
Source: security@ubuntu.com (Secondary)

Description

If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.

Affected (1)

Products: Bpftrace: Bpftrace
1 product
Bpftrace
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 0.20.2
Running on/withPlatform Versions
Linux
Linux Kernel
All versions

References (4)

Source: security@ubuntu.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.