DTrace: Multiple Vulnerabilities — GLSA 202608-24

Multiple vulnerabilities have been found in DTrace, the worst of which could allow denial of service.

Affected packages

dev-debug/dtrace on all architectures
Affected versions < 2.0.7
Unaffected versions >= 2.0.7

Background

DTrace is a dynamic tracing tool for analysing or debugging the whole system. Specifically, dtprobed is a component of the DTrace system that keeps track of USDT probes within running processes, parsing and storing the DOF they provide for later consumption by dtrace proper.

Description

Multiple vulnerabilities have been discovered in DTrace. Please review the CVE identifiers referenced below for details.

Impact

Please review the referenced CVE identifiers for details.

Workaround

There is no known workaround at this time.

Resolution

All DTrace users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose ">=dev-debug/dtrace-2.0.7"
 

References

Release date
August 26, 2026

Latest revision
August 26, 2026: 1

Severity
low

Exploitable
local

Bugzilla entries