CVE-2024-2314
10.03.2024, 23:15
If kernel headers need to be extracted, bcc will attempt to load them from a temporary directory. An unprivileged attacker could use this to force bcc to load compromised linux headers. Linux distributions which provide kernel headers by default are not affected by default.Enginsight
| Vendor | Product | Version |
|---|---|---|
| iovisor | bpf_compiler_collection | 𝑥 < 0.30.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases