The vendor explicitly states that these products are not affected by this CVE.
- libbpf-devel as a component of Red Hat Enterprise Linux 10
- libbpf-static as a component of Red Hat Enterprise Linux 10
- libbpf.src as a component of Red Hat Enterprise Linux 10
- libbpf-devel as a component of Red Hat Enterprise Linux 8
- libbpf-static as a component of Red Hat Enterprise Linux 8
- libbpf.src as a component of Red Hat Enterprise Linux 8
- libbpf-devel as a component of Red Hat Enterprise Linux 9
- libbpf-static as a component of Red Hat Enterprise Linux 9
- libbpf.src as a component of Red Hat Enterprise Linux 9
- openshift/ose-rhel-coreos-8 as a component of Red Hat OpenShift Container Platform 4
- openshift/ose-rhel-coreos-9 as a component of Red Hat OpenShift Container Platform 4
- Summary
- A flaw was found in libbpf. This vulnerability allows a local attacker to execute arbitrary code or cause a denial of service (crash) via a crafted ELF file that triggers a heap buffer overflow.
- Remediation
- No remediation text is recorded.
