A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.8.11/6.9.2. Affected is the function bpf_objec_load_prog of the component libbpf. The manipulation leads to null pointer dereference.

This vulnerability is traded as CVE-2024-38574. Access to the local network is required for this attack to succeed. There is no exploit available.

It is recommended to upgrade the affected component.