CVE-2024-2313
LOWDescription
If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.
Is your site exposed to CVE-2024-2313?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| bpftrace | bpftrace |
| linux | linux_kernel |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-2313? +
How severe is CVE-2024-2313? +
What products are affected by CVE-2024-2313? +
How do I check if I'm vulnerable to CVE-2024-2313? +
Related Vulnerabilities
Insecure creation of temporary files allows local users on systems with non-default configurations to cause denial of service or set …
The application generates uploaded file names using a weak and predictable method based on the request timestamp. This allows a …
Products for macOS enables a user logged on to the system to perform a denial-of-service attack, which could be misused …
Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to a …
Faktory is a language-agnostic background job server. In versions prior to 1.10.0, the embedded Redis bootstrapper is vulnerable to an …
An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to …