In the Linux kernel, the following vulnerability has been resolved:
x86/kprobes: Update kcb status flag after singlestepping
Fix kprobes to update kcb (kprobes control block) status flag to KPROBE_HIT_SSDONE even if the kp->post_handler is not set.
This bug may cause a kernel panic if another INT3 user runs right after kprobes because kprobe_int3_handler() misunderstands the INT3 is kprobe's single stepping INT3.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade kernel-tools-develUpgrade kernel-headersUpgrade perfUpgrade kernel-debuginfoUpgrade perf-debuginfoUpgrade python-perf-debuginfoUpgrade bpftool-debuginfoUpgrade kernel-toolsUpgrade kernel-develUpgrade python-perfUpgrade kernel-debuginfo-common-aarch64Upgrade kernel-debuginfo-common-x86_64Upgrade kernel-livepatch-5.15.69-37.134Upgrade kernelUpgrade kernel-tools-debuginfoUpgrade bpftool | Jul 9, 2025 | Jun 18, 2025 |
| Debian | — | Upgrade linux | Jun 20, 2025 | Jun 20, 2025 |
| Redhat_linux | — | Upgrade kernel-rtUpgrade kernelNo solution exists | Jul 9, 2025 | Jun 18, 2025 |
| Ubuntu | — | Upgrade linuxUpgrade linux-nvidiaUpgrade linux-kvmUpgrade linux-gkeopUpgrade linux-awsUpgrade linux-intel-iotg-5.15Upgrade linux-azure-5.15Upgrade linux-oracleUpgrade linux-ibmUpgrade linux-gcpUpgrade linux-lowlatencyUpgrade linux-gcp-5.15Upgrade linux-riscv-5.15Upgrade linux-oracle-5.15Upgrade linux-intel-iotgUpgrade linux-aws-5.15Upgrade linux-raspiUpgrade linux-hwe-5.15Upgrade linux-azureUpgrade linux-realtimeUpgrade linux-gkeUpgrade linux-lowlatency-hwe-5.15 | Jun 26, 2025 | Jun 18, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub