PT-2025-42249 · Linux · Linux Kernel

Published

2025-09-23

·

Updated

2025-10-16

·

CVE-2025-39974

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 6.17.0-rc6 and earlier
Description An issue exists in the Linux kernel’s tracing/osnoise component related to parsing integer limits. Specifically, the parse integer limit() function may experience a slab-out-of-bounds read when processing CPU lists provided via the write() syscall to the /sys/kernel/debug/tracing/osnoise/cpus interface. This occurs because the bitmap parselist() function requires the input buffer to be null-terminated, which was not guaranteed in the osnoise cpus write() function. The issue can be triggered by providing a CPU list string, such as "1", to the affected API endpoint. The bitmap parselist() function is used to parse the CPU list.
Recommendations Update to a newer version of the Linux kernel that addresses this issue.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03753
CVE-2025-39974

Affected Products

Linux Kernel