If kernel headers need to be extracted, bpftrace will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.
References
Configurations
Configuration 1 (hide)
| AND |
|
History
17 Jun 2026, 07:24
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-2313 - Third Party Advisory | |
| References | () https://github.com/bpftrace/bpftrace/commit/4be4b7191acb8218240e6b7178c30fa8c9b59998 - Patch | |
| First Time |
Bpftrace
Linux linux Kernel Bpftrace bpftrace Linux |
|
| CPE | cpe:2.3:a:bpftrace:bpftrace:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
13 Mar 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-377 |
21 Nov 2024, 09:09
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-2313 - | |
| References | () https://github.com/bpftrace/bpftrace/commit/4be4b7191acb8218240e6b7178c30fa8c9b59998 - |
10 Mar 2024, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-03-10 23:15
Updated : 2026-06-17 07:24
NVD link : CVE-2024-2313
Mitre link : CVE-2024-2313
CVE.ORG link : CVE-2024-2313
JSON object : View
Products Affected
bpftrace
- bpftrace
linux
- linux_kernel
CWE
CWE-377
Insecure Temporary File
