-

CVE-2022-50266

In the Linux kernel, the following vulnerability has been resolved:

kprobes: Fix check for probe enabled in kill_kprobe()

In kill_kprobe(), the check whether disarm_kprobe_ftrace() needs to be
called always fails. This is because before that we set the
KPROBE_FLAG_GONE flag for kprobe so that "!kprobe_disabled(p)" is always
false.

The disarm_kprobe_ftrace() call introduced by commit:

  0cb2f1372baa ("kprobes: Fix NULL pointer dereference at kprobe_ftrace_handler")

to fix the NULL pointer reference problem. When the probe is enabled, if
we do not disarm it, this problem still exists.

Fix it by putting the probe enabled check before setting the
KPROBE_FLAG_GONE flag.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < f20a067f13106565816b4b6a6b665b2088a63824
Version 3031313eb3d549b7ad6f9fbcc52ba04412e3eb9e
Status affected
Version < c909985dd0c0f74b61e3f8f0e04bf8aa9c8b97c7
Version 3031313eb3d549b7ad6f9fbcc52ba04412e3eb9e
Status affected
Version < 0c76ef3f26d5ef2ac2c21b47e7620cff35809fbb
Version 3031313eb3d549b7ad6f9fbcc52ba04412e3eb9e
Status affected
Version 3c5f8d371b7fef3e3714c4a062c7f3b4aa41d122
Status affected
Version 9b55d84deec88c02b053a819acf08a6d471dda02
Status affected
Version 2295608b44c91df767a5c68027f9c9e52ecb28e7
Status affected
Version ce7ff920092130f249b75f9fe177edb3362fefe8
Status affected
Version 3995f7a60feceba6c8f762f4aff3184f90a1291d
Status affected
Version 247c62ebdfae450bb76dd89cd4724df6be07df75
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.9
Status affected
Version < 5.9
Version 0
Status unaffected
Version <= 6.0.*
Version 6.0.16
Status unaffected
Version <= 6.1.*
Version 6.1.2
Status unaffected
Version <= *
Version 6.2
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.02% 0.043
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string