Opentelemetry

Opentelemetry Ebpf Instrumentation

11 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.35%
  • Veröffentlicht 02.06.2026 15:25:55
  • Zuletzt bearbeitet 03.06.2026 16:52:47

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, a remotely reachable integer overflow in OBI's memcached text protocol parser can crash the OBI process ...

Exploit
  • EPSS 0.46%
  • Veröffentlicht 02.06.2026 15:25:46
  • Zuletzt bearbeitet 03.06.2026 16:52:40

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0 to before version 0.9.0, malformed MongoDB wire messages can trigger uncaught panics in the MongoDB TCP parser, allowing a remote...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 02.06.2026 15:25:32
  • Zuletzt bearbeitet 03.06.2026 16:52:32

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, OBI's log enricher mishandles writev buffers by reading only the first iovec entry but using the total i...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 02.06.2026 15:25:11
  • Zuletzt bearbeitet 03.06.2026 16:52:24

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Java TLS ioctl probe reads user-controlled ioctl pointers with bpf_probe_read instead of bpf_probe_read_user. An instrum...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 02.06.2026 15:25:00
  • Zuletzt bearbeitet 03.06.2026 16:52:16

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the per-CPU message-buffer fallback path uses a 256-byte backup buffer but preserves the original payload size, which can be...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 02.06.2026 15:24:46
  • Zuletzt bearbeitet 03.06.2026 16:51:10

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe hits into histogram observations by looping once per recorded run count. On busy systems, the run-coun...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 02.06.2026 15:24:31
  • Zuletzt bearbeitet 03.06.2026 16:50:37

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI exports raw Redis error text as the span status message. Because Redis error replies can contain attacker-controlled or ...

Exploit
  • EPSS 0.34%
  • Veröffentlicht 02.06.2026 15:24:12
  • Zuletzt bearbeitet 03.06.2026 16:50:28

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Postgres protocol parser assumes BIND message payloads contain a valid NUL-terminated portal name. A crafted empty or un...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 02.06.2026 15:23:50
  • Zuletzt bearbeitet 03.06.2026 16:08:03

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI's replacement ELF parser trusts section offsets, counts, and string offsets from the executable file. A crafted local EL...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 02.06.2026 15:23:24
  • Zuletzt bearbeitet 03.06.2026 16:51:37

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the custom CappedConcurrentHashMap introduced for Java TLS state tracking never removes keys from its insertion-order queue ...