Low: bcc security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:8831", "synopsis": "Low: bcc security update", "severity": "SEVERITY_LOW", "topic": "An update is available for bcc.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "BPF Compiler Collection (BCC) is a toolkit for easier creation of efficient kernel tracing and manipulation programs. BCC uses the extended Berkeley Packet Filter (eBPF) tool.\n\nSecurity Fix(es):\n\n* bcc: unprivileged users can force loading of compromised linux headers (CVE-2024-2314)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2269019", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2269019", "description": ""}], "cves": [{"name": "CVE-2024-2314", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-2314", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-11-08T15:56:47.559546Z", "rpms": {"Rocky Linux 8": {"nvras": ["bcc-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-0:0.25.0-9.el8_10.src.rpm", "bcc-0:0.25.0-9.el8_10.x86_64.rpm", "bcc-debuginfo-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-debuginfo-0:0.25.0-9.el8_10.x86_64.rpm", "bcc-debugsource-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-debugsource-0:0.25.0-9.el8_10.x86_64.rpm", "bcc-devel-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-devel-0:0.25.0-9.el8_10.x86_64.rpm", "bcc-doc-0:0.25.0-9.el8_10.noarch.rpm", "bcc-tools-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-tools-0:0.25.0-9.el8_10.x86_64.rpm", "bcc-tools-debuginfo-0:0.25.0-9.el8_10.aarch64.rpm", "bcc-tools-debuginfo-0:0.25.0-9.el8_10.x86_64.rpm","python3-bcc-0:0.25.0-9.el8_10.aarch64.rpm", "python3-bcc-0:0.25.0-9.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. An important patch has been released for Rocky Linux 8, focusing on enhancing kernel logging with several low-risk vulnerabilities resolved.. bcc update, kernel tracing, Rocky Linux release, low severity fix. . Severity: Low. LinuxSecurity.com Team
An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for bcc ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:0535-1 Rating: moderate References: #1183399 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for bcc fixes the following issues: - Enabled PIE for bcc-lua if lua support is enabled (bsc#1183399) This update was imported from the SUSE:SLE-15-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-535=1 Package List: - openSUSE Leap 15.2 (x86_64): bcc-debuginfo-0.12.0-lp152.3.3.1 bcc-debugsource-0.12.0-lp152.3.3.1 bcc-devel-0.12.0-lp152.3.3.1 bcc-docs-0.12.0-lp152.3.3.1 bcc-examples-0.12.0-lp152.3.3.1 bcc-lua-0.12.0-lp152.3.3.1 bcc-lua-debuginfo-0.12.0-lp152.3.3.1 bcc-tools-0.12.0-lp152.3.3.1 libbcc0-0.12.0-lp152.3.3.1 libbcc0-debuginfo-0.12.0-lp152.3.3.1 python2-bcc-0.12.0-lp152.3.3.1 python3-bcc-0.12.0-lp152.3.3.1 References: https://bugzilla.suse.com/1183399 . Security patches addressing moderate vulnerabilities have been released for bcc on openSUSE Leap 15.2. Update your systems to enhance security and reduce risks. openSUSE security,bcc update,security patches. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.