PT-2026-98695 · Linux · Linux
CVE-2026-98032
·
Published
2026-09-25
·
Updated
2026-09-25
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix subbuf resize races with trace pipe raw readers
Concurrent subbuffer resizes may crash trace pipe raw readers or leak
uninitialized memory to userspace due to stale size values.
Modify ring buffer alloc read page() to handle the resizing of an
existing buffer data read page if necessary and add a new
ring buffer read page size(). This new function enables ring-buffer
buffer data read page users to not call the racy
ring buffer subbuf size get(). This makes the spare size member of
ftrace buffer info redundant.
Finally, handle buffer data read page/reader page order discrepancy in
ring buffer read page(). On a mismatch simply copy manually the data to
the buffer data read page.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux