In the Linux kernel, the following vulnerability has been resolved:
x86/kprobes: Update kcb status flag after singlestepping
Fix kprobes to update kcb (kprobes control block) status flag to KPROBE_HIT_SSDONE even if the kp->post_handler is not set.
This bug may cause a kernel panic if another INT3 user runs right after kprobes because kprobe_int3_handler() misunderstands the INT3 is kprobe's single stepping INT3.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade perf-debuginfoUpgrade kernel-tools-develUpgrade kernel-debuginfoUpgrade perfUpgrade python-perf-debuginfoUpgrade kernel-headersUpgrade bpftool-debuginfoUpgrade kernel-toolsUpgrade kernelUpgrade bpftoolUpgrade kernel-debuginfo-common-x86_64Upgrade kernel-tools-debuginfoUpgrade kernel-livepatch-5.15.69-37.134Upgrade kernel-develUpgrade python-perfUpgrade kernel-debuginfo-common-aarch64 | Jul 9, 2025 | Jun 18, 2025 |
| Debian | — | Upgrade linux | Jun 20, 2025 | Jun 20, 2025 |
| Redhat_linux | — | Upgrade kernelNo solution existsUpgrade kernel-rt | Jul 9, 2025 | Jun 18, 2025 |
| Ubuntu | — | Upgrade linux-azure-5.15Upgrade linux-gkeopUpgrade linux-kvmUpgrade linux-oracleUpgrade linux-nvidiaUpgrade linux-awsUpgrade linux-ibmUpgrade linux-intel-iotg-5.15Upgrade linux-gcpUpgrade linuxUpgrade linux-raspiUpgrade linux-hwe-5.15Upgrade linux-aws-5.15Upgrade linux-gkeUpgrade linux-riscv-5.15Upgrade linux-gcp-5.15Upgrade linux-lowlatency-hwe-5.15Upgrade linux-azureUpgrade linux-lowlatencyUpgrade linux-realtimeUpgrade linux-intel-iotgUpgrade linux-oracle-5.15 | Jun 26, 2025 | Jun 18, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub