CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2024-56569: ftrace: Fix regression with module command in stack_trace_filter

Description

In the Linux kernel, the following vulnerability has been resolved:

ftrace: Fix regression with module command in stack_trace_filter

When executing the following command:

# echo "write*:mod:ext3" > /sys/kernel/tracing/stack_trace_filter

The current mod command causes a null pointer dereference. While commit
0f17976568b3f ("ftrace: Fix regression with module command in stack_trace_filter")
has addressed part of the issue, it left a corner case unhandled, which still
results in a kernel crash.

Classification

CVE ID: CVE-2024-56569

Affected Products

Vendor: Linux

Product: Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 5.08% (scored less or equal to compared to others)

EPSS Date: 2025-02-04 (when was this score calculated)

References

https://git.kernel.org/stable/c/43ca32ce12888fb0eeb2d74dfc558dea60d3473e
https://git.kernel.org/stable/c/5dabb7af57bc72308a6e2e81a5dd756eef283803
https://git.kernel.org/stable/c/885109aa0c70639527dd6a65c82e63c9ac055e3d
https://git.kernel.org/stable/c/7ae27880de3482e063fcc1f72d9a298d0d391407
https://git.kernel.org/stable/c/8a92dc4df89c50bdb26667419ea70e0abbce456e
https://git.kernel.org/stable/c/19cacabdd5a8487ae566cbecb4d03bcb038a067e
https://git.kernel.org/stable/c/45af52e7d3b8560f21d139b3759735eead8b1653

Timeline