Linux Kernel Trace Event Handling Vulnerability Leading to Denial-of-Service

Vulnerability

A vulnerability in the Linux kernel's trace event handling can cause a kernel crash when two modules are loaded simultaneously. The issue arises because the modules can interfere with each other's trace event registrations, particularly when modifying print formatting. This conflict can disrupt the kernel's processing of trace events, leading to a crash. The vulnerability affects the Linux kernel stable tree.

Impact

The vulnerability can cause a kernel crash, disrupting system operations and potentially leading to a denial-of-service condition.

Reproduction

To reproduce this vulnerability, load two kernel modules simultaneously that both add trace events. The conflict between the modules can cause the kernel to crash. This issue can be observed in the Linux kernel stable tree, specifically in the trace event handling code.

Remediation

The vulnerability has been addressed in the Linux kernel. Users should upgrade to the latest version.

Added: Aug 16, 2025, 12:34 PM
Updated: Aug 16, 2025, 12:34 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
3.9
remediation
7.7
relevance
0.4
threat
4.8
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.