CVE-2024-26946
In the Linux kernel, the following vulnerability has been resolved: kprobes/x86: Use copy_from_kernel_nofault() to read from unsafe address Read from an unsafe address with copy_from_kernel_nofault() in arch_adjust_kprobe_addr() because this function is…
Does this matter?
Lower severity and a low EPSS score (0.24%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: kprobes/x86: Use copy_from_kernel_nofault() to read from unsafe address Read from an unsafe address with copy_from_kernel_nofault() in arch_adjust_kprobe_addr() because this function is used before checking the address is in text or not. Syzcaller bot found a bug and reported the case if user specifies inaccessible data area, arch_adjust_kprobe_addr() will cause a kernel panic. [ mingo: Clarified the comment. ]
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.24% probability · 15th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-617
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/20fdb21eabaeb8f78f8f701f56d14ea0836ec861Patch
- https://git.kernel.org/stable/c/4e51653d5d871f40f1bd5cf95cc7f2d8b33d063bPatch
- https://git.kernel.org/stable/c/6417684315087904fffe8966d27ca74398c57dd6Patch
- https://git.kernel.org/stable/c/b69f577308f1070004cafac106dd1a44099e5483Patch
- https://git.kernel.org/stable/c/f13edd1871d4fb4ab829aff629d47914e251bae3Patch
- https://git.kernel.org/stable/c/20fdb21eabaeb8f78f8f701f56d14ea0836ec861Patch
- https://git.kernel.org/stable/c/4e51653d5d871f40f1bd5cf95cc7f2d8b33d063bPatch
- https://git.kernel.org/stable/c/6417684315087904fffe8966d27ca74398c57dd6Patch
- https://git.kernel.org/stable/c/b69f577308f1070004cafac106dd1a44099e5483Patch
- https://git.kernel.org/stable/c/f13edd1871d4fb4ab829aff629d47914e251bae3Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.