In the Linux kernel, the following vulnerability has been resolved:
sched_ext: Fix scx_enable() crash on helper kthread creation failure
A crash was observed when the sched_ext selftests runner was terminated with Ctrl+\ while test 15 was running:
NIP [c00000000028fa58] scx_enable.constprop.0+0x358/0x12b0 LR [c00000000028fa2c] scx_enable.constprop.0+0x32c/0x12b0 Call Trace: scx_enable.constprop.0+0x32c/0x12b0 (unreliable) bpf_struct_ops_link_create+0x18c/0x22c __sys_bpf+0x23f8/0x3044 sys_bpf+0x2c/0x6c system_call_exception+0x124/0x320 system_call_vectored_common+0x15c/0x2ec
kthread_run_worker() returns an ERR_PTR() on failure rather than NULL, but the current code in scx_alloc_and_add_sched() only checks for a NULL helper. Incase of failure on SIGQUIT, the error is not handled in scx_alloc_and_add_sched() and scx_enable() ends up dereferencing an error pointer.
Error handling is fixed in scx_alloc_and_add_sched() to propagate PTR_ERR() into ret, so that scx_enable() jumps to the existing error path, avoiding random dereference on failure.
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-azureUpgrade linux-image-awsUpgrade linux-image-raspiUpgrade linux-image-oracle-64k-6.17Upgrade linux-image-realtimeUpgrade linux-image-realtime-6.17Upgrade linux-image-6.17.0-1009-awsUpgrade linux-image-gcp-6.17Upgrade linux-image-6.17.0-19-generic-64kUpgrade linux-image-gcp-64k-6.17Upgrade linux-image-oracle-6.17Upgrade linux-image-6.17.0-1009-oracleUpgrade linux-image-generic-64k-6.17Upgrade linux-image-realtime-hwe-24.04Upgrade linux-image-6.17.0-1009-oracle-64kUpgrade linux-image-6.17.0-1010-azureUpgrade linux-image-aws-64k-6.17Upgrade linux-image-gcp-64kUpgrade linux-image-aws-6.17Upgrade linux-image-6.17.0-1009-aws-64kUpgrade linux-image-oracle-64kUpgrade linux-image-oem-24.04aUpgrade linux-image-azure-6.17Upgrade linux-image-oem-24.04cUpgrade linux-image-generic-64kUpgrade linux-image-6.17.0-1008-realtimeUpgrade linux-image-virtual-6.17Upgrade linux-image-oem-6.17Upgrade linux-image-raspi-6.17Upgrade linux-image-genericUpgrade linux-image-6.17.0-19-genericUpgrade linux-image-6.17.0-1009-gcp-64kUpgrade linux-image-oem-24.04Upgrade linux-image-6.17.0-1017-oemUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-6.17.0-1009-gcpUpgrade linux-image-6.17.0-1010-raspiUpgrade linux-image-oem-24.04dUpgrade linux-image-virtualUpgrade linux-image-oem-24.04bUpgrade linux-image-generic-6.17Upgrade linux-image-virtual-hwe-24.04Upgrade linux-image-oracleUpgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-gcpUpgrade linux-image-aws-64k | Mar 17, 2026 | Dec 4, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub