Impact
The Linux kernel’s uprobes implementation contains a bug where the optimization of a 10‑byte NOP sequence places a CALL instruction that stores a return address onto the user stack before the stack pointer has been adjusted. This can clobber the redzone area where user code may keep temporary data, leading to stack corruption and potential kernel instability or privilege escalation. The weakness resembles an uncontrolled write to a kernel memory buffer (CWE‑787).
Affected Systems
All Linux kernel releases that support the uprobes tracing infrastructure may be affected until the optimization is corrected. No specific version range is listed, so any kernel using uprobes could potentially encounter the stack clobbering issue until the patch is integrated.
Risk and Exploitability
The EPSS score is < 1 %, indicating the likelihood of exploitation is very low, and the vulnerability is not currently listed in CISA’s KEV catalog. Exploitation would require the ability to install or manipulate uprobes, typically a local kernel‑level capability. While the bug could lead to memory corruption, the path to a successful attack is non‑easily exploitable and would likely be limited to privileged users or administrators with kernel control.
OpenCVE Enrichment