cbcvebase.
CVE-2024-56569
published 2024-12-27

CVE-2024-56569: In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix regression with module command in stack_trace_filter When executing the…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
14.4th percentile
In the Linux kernel, the following vulnerability has been resolved:

ftrace: Fix regression with module command in stack_trace_filter

When executing the following command:

# echo "write*:mod:ext3" > /sys/kernel/tracing/stack_trace_filter

The current mod command causes a null pointer dereference. While commit
0f17976568b3f ("ftrace: Fix regression with module command in stack_trace_filter")
has addressed part of the issue, it left a corner case unhandled, which still
results in a kernel crash.

Affected

25 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 43ca32ce12888fb0eeb2d74dfc558dea60d3473e43ca32ce12888fb0eeb2d74dfc558dea60d3473e
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 5dabb7af57bc72308a6e2e81a5dd756eef2838035dabb7af57bc72308a6e2e81a5dd756eef283803
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 885109aa0c70639527dd6a65c82e63c9ac055e3d885109aa0c70639527dd6a65c82e63c9ac055e3d
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 7ae27880de3482e063fcc1f72d9a298d0d3914077ae27880de3482e063fcc1f72d9a298d0d391407
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 8a92dc4df89c50bdb26667419ea70e0abbce456e8a92dc4df89c50bdb26667419ea70e0abbce456e
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 19cacabdd5a8487ae566cbecb4d03bcb038a067e19cacabdd5a8487ae566cbecb4d03bcb038a067e
linuxlinux>= 04ec7bb642b77374b53731b795b5654b5aff1c00 < 45af52e7d3b8560f21d139b3759735eead8b165345af52e7d3b8560f21d139b3759735eead8b1653
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 4.12 < 5.4.2875.4.287
linuxlinux_kernel>= 5.11 < 5.15.1745.15.174
linuxlinux_kernel>= 5.16 < 6.1.1206.1.120
linuxlinux_kernel>= 5.5 < 5.10.2315.10.231
linuxlinux_kernel>= 6.2 < 6.6.646.6.64
linuxlinux_kernel>= 6.7 < 6.12.46.12.4
msrccbl2_kernel_5.15.173.1-2_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.176.3-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.