Linux Kernel Nubus Bus Segmentation Fault Vulnerability

Vulnerability

A segmentation fault vulnerability has been identified in the Linux kernel's Nubus bus handling. This issue arises from a regression introduced by the conversion to 'proc_create_single_data()', which is not compatible with the original implementation. As a result, reading files in '/proc/bus/nubus' can cause a segmentation fault, leading to a kernel crash. The vulnerability affects several versions of the Linux kernel.

Impact

Exploitation of this vulnerability leads to a segmentation fault, causing a kernel crash.

Reproduction

The vulnerability can be reproduced by reading a file in '/proc/bus/nubus/e/' using the 'grep' command. This action triggers a data read fault, resulting in a segmentation fault and a kernel crash.

Remediation

Users can apply the latest patches available in the Linux kernel stable tree to address this vulnerability.

Added: Sep 15, 2025, 5:52 PM
Updated: Sep 15, 2025, 5:52 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.3
remediation
7.7
relevance
0.5
threat
4.8
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.