Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tristan Hume

#46548of 53,633
5.5Total CVSS
Vulnerabilities · 1
PT-2024-9277
5.5
2024-06-20
Linux · Linux Kernel · CVE-2022-48713
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified) Description: The issue is related to a null pointer dereference in the perf/x86/intel/pt component of the Linux kernel, which can cause a kernel crash when a PT stop filter range is hit while tracing. This is due to a missing check for the `buf->single` variable before calling `pt buffer region size`. The problem was introduced by a commit that added support for PT single-range output mode. When execution hits a configured stop filter, the kernel will crash because of the null pointer dereference in `pt handle status` due to calling `pt buffer region size` without a ToPA configured. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.