CVE-2025-22069Resource Exposure in Linux

CWE-668Resource Exposure11 documents6 sources
Severity
7.8HIGHNVD
EPSS
0.1%
top 74.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 16
Latest updateJul 8

Description

In the Linux kernel, the following vulnerability has been resolved: riscv: fgraph: Fix stack layout to match __arch_ftrace_regs argument of ftrace_return_to_handler Naresh Kamboju reported a "Bad frame pointer" kernel warning while running LTP trace ftrace_stress_test.sh in riscv. We can reproduce the same issue with the following command: ``` $ cd /sys/kernel/debug/tracing $ echo 'f:myprobe do_nanosleep%return args1=$retval' > dynamic_events $ echo 1 > events/fprobes/enable $ echo 1 > tracin

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages5 packages

NVDlinux/linux_kernel6.146.14.2
Debianlinux/linux_kernel< 6.16.3-1
Ubuntulinux/linux_kernel< 6.14.0-22.22
CVEListV5linux/linuxa3ed4157b7d89800a0008de0c9e46a438a5c374578b39c587b8f6c69140177108f9c08a75b1c7c37+3
debiandebian/linux

Patches

🔴Vulnerability Details

5
OSV
linux-aws, linux-oracle vulnerabilities2025-07-08
OSV
linux-azure vulnerabilities2025-06-26
OSV
linux, linux-gcp, linux-raspi, linux-realtime vulnerabilities2025-06-24
GHSA
GHSA-jxfc-qg7h-gw67: In the Linux kernel, the following vulnerability has been resolved: riscv: fgraph: Fix stack layout to match __arch_ftrace_regs argument of ftrace_re2025-04-16
OSV
CVE-2025-22069: In the Linux kernel, the following vulnerability has been resolved: riscv: fgraph: Fix stack layout to match __arch_ftrace_regs argument of ftrace_ret2025-04-16

📋Vendor Advisories

5
Ubuntu
Linux kernel vulnerabilities2025-07-08
Ubuntu
Linux kernel (Azure) vulnerabilities2025-06-26
Ubuntu
Linux kernel vulnerabilities2025-06-24
Red Hat
kernel: riscv: fgraph: Fix stack layout to match __arch_ftrace_regs argument of ftrace_return_to_handler2025-04-16
Debian
CVE-2025-22069: linux - In the Linux kernel, the following vulnerability has been resolved: riscv: fgra...2025
CVE-2025-22069 — Resource Exposure in Linux | cvebase