PT-2026-98695 · Linux · Linux

CVE-2026-98032

·

Published

2026-09-25

·

Updated

2026-09-25

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix subbuf resize races with trace pipe raw readers
Concurrent subbuffer resizes may crash trace pipe raw readers or leak uninitialized memory to userspace due to stale size values.
Modify ring buffer alloc read page() to handle the resizing of an existing buffer data read page if necessary and add a new ring buffer read page size(). This new function enables ring-buffer buffer data read page users to not call the racy ring buffer subbuf size get(). This makes the spare size member of ftrace buffer info redundant.
Finally, handle buffer data read page/reader page order discrepancy in ring buffer read page(). On a mismatch simply copy manually the data to the buffer data read page.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-98032

Affected Products

Linux