PT-2025-37568 · Linux+2 · Linux+2
Published
2022-01-01
·
Updated
2026-05-26
·
CVE-2022-50266
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
linux (affected versions not specified)
Description
A flaw was discovered in the Linux kernel related to kprobes. Specifically, the check within
kill kprobe() to determine if disarm kprobe ftrace() needs to be called consistently fails. This occurs because the KPROBE FLAG GONE flag is set for the kprobe before the check, resulting in !kprobe disabled(p) always evaluating to false. This issue stems from a previous fix intended to address a NULL pointer dereference in kprobe ftrace handler introduced by commit 0cb2f1372baa. Without correctly disarming the probe when enabled, the original NULL pointer dereference problem persists.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Linux
Suse