In the Linux kernel, the following vulnerability has been resolved:
fgraph: Add READ_ONCE() when accessing fgraph_array[]
In __ftrace_return_to_handler(), a loop iterates over the fgraph_array[] elements, which are fgraph_ops. The loop checks if an element is a fgraph_stub to prevent using a fgraph_stub afterward.
However, if the compiler reloads fgraph_array[] after this check, it might race with an update to fgraph_array[] that introduces a fgraph_stub. This could result in the stub being processed, but the stub contains a null "func_hash" field, leading to a NULL pointer dereference.
To ensure that the gops compared against the fgraph_stub matches the gops processed later, add a READ_ONCE(). A similar patch appears in commit 63a8dfb ("function_graph: Add READ_ONCE() when accessing fgraph_array[]").
CVSS Details
- CVSS 3.1 Base Score: 4.7
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Jul 27, 2026 | Jul 27, 2026 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jan 21, 2025 |
| Ubuntu | — | Upgrade linux-image-virtual-hwe-24.04Upgrade linux-image-oem-24.04bUpgrade linux-image-oem-24.04Upgrade linux-image-6.11.0-1012-azureUpgrade linux-image-gcpUpgrade linux-image-6.11.0-1011-gcp-64kUpgrade linux-image-6.11.0-1017-oemUpgrade linux-image-virtualUpgrade linux-image-lowlatency-hwe-24.04Upgrade linux-image-lowlatency-64k-hwe-24.04Upgrade linux-image-6.11.0-21-genericUpgrade linux-image-lowlatency-64kUpgrade linux-image-6.11.0-1011-awsUpgrade linux-image-lowlatencyUpgrade linux-image-6.11.0-1007-realtimeUpgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-oracleUpgrade linux-image-6.11.0-1012-azure-fdeUpgrade linux-image-genericUpgrade linux-image-6.11.0-1011-lowlatency-64kUpgrade linux-image-generic-64kUpgrade linux-image-6.11.0-1010-raspiUpgrade linux-image-awsUpgrade linux-image-6.11.0-21-generic-64kUpgrade linux-image-azureUpgrade linux-image-gcp-64kUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-raspiUpgrade linux-image-6.11.0-1013-oracle-64kUpgrade linux-image-oracle-64kUpgrade linux-image-6.11.0-1011-gcpUpgrade linux-image-6.11.0-1011-lowlatencyUpgrade linux-image-oem-24.04aUpgrade linux-image-6.11.0-1013-oracleUpgrade linux-image-realtime-hwe-24.04Upgrade linux-image-realtimeUpgrade linux-image-azure-fde | Mar 28, 2025 | Jan 21, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub