In the Linux kernel, the following vulnerability has been resolved:arm64: bpf: Only mitigate cBPF programs loaded by unprivileged usersSupport for eBPF programs loaded by unprivileged users is typicallydisabled. This means only cBPF programs need to be mitigated for BHB.In addition, only mitigate cBPF programs that were loaded by anunprivileged user. Privileged users can also load the same programvia eBPF, making the mitigation pointless.
No PoCs from references.
- https://github.com/runwhen-contrib/helm-charts
- https://github.com/w4zu/Debian_security