I
f kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.
References
Configurations
Configuration 1 (hide)
| AND |
|
History
25 Aug 2025, 15:26
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Linux
Bpftrace bpftrace Linux linux Kernel Bpftrace |
|
| CPE | cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:a:bpftrace:bpftrace:*:*:*:*:*:*:*:* |
|
| References | () https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-2313 - Third Party Advisory | |
| References | () https://github.com/bpftrace/bpftrace/commit/4be4b7191acb8218240e6b7178c30fa8c9b59998 - Patch |
13 Mar 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-377 |
21 Nov 2024, 09:09
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-2313 - | |
| References | () https://github.com/bpftrace/bpftrace/commit/4be4b7191acb8218240e6b7178c30fa8c9b59998 - |
Information
Published : 2024-03-10 23:15
Updated : 2025-08-25 15:26
NVD link : CVE-2024-2313
Mitre link : CVE-2024-2313
CVE.ORG link : CVE-2024-2313
JSON object : View
Products Affected
CWE
CWE-377
Insecure Temporary File