PT-2024-21434 · Linux+10 · Linux Kernel+10
Petr Pavlu
·
Published
2024-01-22
·
Updated
2025-10-03
·
CVE-2024-26645
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.7.0
Description
The issue is caused by CPU reordering of writes issued from tracing map insert(). This can lead to incorrect determination of key matches on another CPU, resulting in unexpected warnings about duplicate histogram entries. The problem can be reproduced by running specific commands in parallel on a multi-processor AArch64 machine.
Recommendations
To resolve the issue, update the Linux kernel to version 6.7.0 or later. If updating is not possible, consider disabling the tracing feature or restricting access to the vulnerable module until a patch is available.
Exploit
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu