Количество 6
Количество 6
CVE-2026-64375
In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link().
CVE-2026-64375
A flaw was found in the Linux kernel's `proc` filesystem. A local attacker with low privileges could exploit a race condition within the `ptrace_may_access()` function when handling file descriptor links. This vulnerability arises because the system performs multiple task lookups without proper synchronization during access checks. Successful exploitation could allow the attacker to bypass security restrictions, potentially leading to unauthorized information disclosure, modification of system data, or a denial of service.
CVE-2026-64375
In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link().
CVE-2026-64375
proc: protect ptrace_may_access() with exec_update_lock (FD links)
CVE-2026-64375
In the Linux kernel, the following vulnerability has been resolved: p ...
GHSA-4h3q-cf72-r99p
In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link().
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-64375 In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link(). | CVSS3: 7.8 | 0% Низкий | 7 дней назад | |
CVE-2026-64375 A flaw was found in the Linux kernel's `proc` filesystem. A local attacker with low privileges could exploit a race condition within the `ptrace_may_access()` function when handling file descriptor links. This vulnerability arises because the system performs multiple task lookups without proper synchronization during access checks. Successful exploitation could allow the attacker to bypass security restrictions, potentially leading to unauthorized information disclosure, modification of system data, or a denial of service. | CVSS3: 7 | 0% Низкий | 7 дней назад | |
CVE-2026-64375 In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link(). | CVSS3: 7.8 | 0% Низкий | 7 дней назад | |
CVE-2026-64375 proc: protect ptrace_may_access() with exec_update_lock (FD links) | 0% Низкий | 6 дней назад | ||
CVE-2026-64375 In the Linux kernel, the following vulnerability has been resolved: p ... | CVSS3: 7.8 | 0% Низкий | 7 дней назад | |
GHSA-4h3q-cf72-r99p In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace access check on that task, then look up the task from the pid a second time to do the actual access. That's racy in several ways. To fix it, pass the task to the ->proc_get_link() handler, and instead of proc_fd_access_allowed(), introduce a new helper call_proc_get_link() that looks up and locks the task, does the access check, and calls ->proc_get_link(). | CVSS3: 7.8 | 0% Низкий | 7 дней назад |
Уязвимостей на страницу