๐Ÿ” CVE Alert

CVE-2026-68177

UNKNOWN 0.0

tracing: Delay module ref count for "enable_event" trigger

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: tracing: Delay module ref count for "enable_event" trigger Triggers are now delayed from freeing, but can still be triggered until after the RCU grace period has ended. The freeing of the enable_event data is put into the private_data_free() callback, but the put of the module refcount is done immediately. It is possible that if a module is removed that has an event that would enable (or disable) it is still active, it can read the data of the module after it is removed causing a use-after-free bug. Move the trace_event_put_ref() that releases the module into the delayed callback so that the module can not be removed until any reference to its events are finished.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
61d445af0a7c70018111919e47beaaee15653f2f < 159fdc3e01dca5fdbc412fcd8b239895733a270d 61d445af0a7c70018111919e47beaaee15653f2f < e091351b38818ef620d27f44f4bfd625f13afbff
Linux / Linux
6.19

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/159fdc3e01dca5fdbc412fcd8b239895733a270d git.kernel.org: https://git.kernel.org/stable/c/e091351b38818ef620d27f44f4bfd625f13afbff