Creation of temporary file in directory with insecure permissions in bpftrace - CVE-2024-2313
Published: November 6, 2024
Vulnerability identifier: #VU99853
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-2313
CWE-ID: CWE-379
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to software loads kernel headers from an insecure temporary directory. A local user can place malicious links headers into the temporary directory and escalate privileges on the system.
Affected software
bpftrace
Amazon Linux AMI
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Anolis OS
bpftrace (Red Hat package)
bpftrace
Amazon Linux AMI
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Anolis OS
bpftrace (Red Hat package)
bpftrace
How to mitigate CVE-2024-2313
Install updates from vendor's website.
bpftrace - update to 0.21.0
bpftrace (Red Hat package) - addressed in versions 0.16.0-6.el8_10, 0.21.1-1.el9
bpftrace - update to 0.16.0-8
bpftrace - update to 0.17.0-1
bpftrace (Red Hat package) - addressed in versions 0.16.0-6.el8_10, 0.21.1-1.el9
bpftrace - update to 0.16.0-8
bpftrace - update to 0.17.0-1