In the Linux kernel, the following vulnerability has been resolved:
tracing/probes: Fix MAX_TRACE_ARGS limit handling
When creating a trace_probe we would set nr_args prior to truncating the arguments to MAX_TRACE_ARGS. However, we would only initialize arguments up to the limit.
This caused invalid memory access when attempting to set up probes with more than 128 fetchargs.
BUG: kernel NULL pointer dereference, address: 0000000000000020 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 0 P4D 0 Oops: Oops: 0000 [#1] PREEMPT SMP PTI CPU: 0 UID: 0 PID: 1769 Comm: cat Not tainted 6.11.0-rc7+ #8 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.3-1.fc39 04/01/2014 RIP: 0010:__set_print_fmt+0x134/0x330
Resolve the issue by applying the MAX_TRACE_ARGS limit earlier. Return an error when there are too many arguments instead of silently truncating.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Jul 27, 2026 | Jul 27, 2026 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Nov 5, 2024 |
| Ubuntu | — | Upgrade linux-image-realtime-hwe-24.04Upgrade linux-image-lowlatency-64kUpgrade linux-image-6.11.0-18-genericUpgrade linux-image-genericUpgrade linux-image-oracle-64kUpgrade linux-image-6.11.0-1009-azure-fdeUpgrade linux-image-6.11.0-1010-lowlatencyUpgrade linux-image-azureUpgrade linux-image-virtual-hwe-24.04Upgrade linux-image-raspiUpgrade linux-image-6.11.0-1015-oemUpgrade linux-image-gcpUpgrade linux-image-oem-24.04Upgrade linux-image-6.11.0-1009-azureUpgrade linux-image-6.11.0-18-generic-64kUpgrade linux-image-generic-64kUpgrade linux-image-6.11.0-1011-oracle-64kUpgrade linux-image-oem-24.04aUpgrade linux-image-lowlatencyUpgrade linux-image-virtualUpgrade linux-image-6.11.0-1010-lowlatency-64kUpgrade linux-image-oem-24.04bUpgrade linux-image-awsUpgrade linux-image-6.11.0-1005-realtimeUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-6.11.0-1008-raspiUpgrade linux-image-azure-fdeUpgrade linux-image-oracleUpgrade linux-image-6.11.0-1009-gcpUpgrade linux-image-realtimeUpgrade linux-image-6.11.0-1011-oracleUpgrade linux-image-6.11.0-1009-awsUpgrade linux-image-generic-64k-hwe-24.04 | Feb 20, 2025 | Nov 5, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub