CVE-2026-64163 Details
Description
In the Linux kernel, the following vulnerability has been resolved: test_kprobes: clear kprobes between test runs Running the kprobes sanity tests twice makes all tests fail and eventually crashes the kernel. [root@martin-riscv-1 ~]# echo 1 > /sys/kernel/debug/kunit/kprobes_test/run ... # Totals: pass:5 fail:0 skip:0 total:5 ok 1 kprobes_test [root@martin-riscv-1 ~]# echo 1 > /sys/kernel/debug/kunit/kprobes_test/run ... # test_kprobe: EXPECTATION FAILED at lib/tests/test_kprobes.c:64 Expected 0 == register_kprobe(&kp), but register_kprobe(&kp) == -22 (0xffffffffffffffea) ... Unable to handle kernel paging request ... The testsuite defines several kprobes and kretprobes as static variables that are preserved across test runs. After register_kprobe and unregister_kprobe, a kprobe contains some leftover data that must be cleared before the kprobe can be registered again. The tests are setting symbol_name to define the probe location. Address and flags must be cleared. The existing code clears some of the probes between subsequent tests, but not between two test runs. The leftover data from a previous test run makes the registrations fail in the next run. Move the cleanups for all kprobes into kprobes_test_init, this function is called before each single test (including the first test of a test run).
A denial-of-service vulnerability has been identified in the Linux kernel's kprobes test suite. When the kprobes sanity tests are run twice, all tests fail and the kernel eventually crashes. This issue arises because the test suite defines several kprobes and kretprobes as static variables that persist across test runs. After a kprobe is registered and then unregistered, it retains some residual data that must be cleared before it can be registered again. The tests set the symbol_name to define the probe location, and both the address and flags need to be cleared. While the existing code clears some probes between subsequent tests, it does not do so between two test runs. The leftover data from the first test run causes the registrations to fail in the next run, leading to a crash. The vulnerability affects the Linux kernel stable tree.
The vulnerability has been addressed in the Linux kernel by modifying the kprobes test suite to clear the residual data from kprobes and kretprobes before each test run. Users can apply the latest patches from the Linux kernel stable tree to address this issue.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/08d355936fcf70c81c94f9fe7310450b65c53399 | kernel.org | Patch |
| https://git.kernel.org/stable/c/1c24cf1fd67f6702c719ab73499392cb7af956ae | kernel.org | Patch |
| https://git.kernel.org/stable/c/96515819d79f356f40da5540968d838ea570fab9 | kernel.org | Patch |
| https://git.kernel.org/stable/c/accc0004c501a9918313142282b094d408af06fb | kernel.org | Patch |
| https://git.kernel.org/stable/c/ef5581bb30efb939cc2bf093475c6cc85258e5cd | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 5.16, < 6.6.142 >= 6.7, < 6.12.92 >= 6.13, < 6.18.34 >= 6.19, < 7.0.11 7.1 rc1 7.1 rc2 7.1 rc3 |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 13, 2026 | Initial Analysis | [email protected] |
| Jul 19, 2026 | New CVE Received | kernel.org |