CVE-2024-35955 - CVE House
Back to Database
Status published Unknown CVE-2024-35955

kprobes: Fix possible use-after-free issue on kprobe registration

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: kprobes: Fix possible use-after-free issue on kprobe registration When unloading a module, its state is changing MODULE_STATE_LIVE -> MODULE_STATE_GOING -> MODULE_STATE_UNFORMED. Each change will take a time. `is_module_text_address()` and `__module_text_address()` works with MODULE_STATE_LIVE and MODULE_STATE_GOING. If we use `is_module_text_address()` and `__module_text_address()` separately, there is a chance that the first one is succeeded but the next one is failed because module->state becomes MODULE_STATE_UNFORMED between those operations. In `check_kprobe_address_safe()`, if the second `__module_text_address()` is failed, that is ignored because it expected a kernel_text address. But it may have failed simply because module->state has been changed to MODULE_STATE_UNFORMED. In this case, arm_kprobe() will try to modify non-exist module text address (use-after-free). To fix this problem, we should not use separated `is_module_text_address()` and `__module_text_address()`, but use only `__module_text_address()` once and do `try_module_get(module)` which is only available with MODULE_STATE_LIVE.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-35955

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
1c836bad43f3e2ff71cc397a6e6ccb4e7bd116f8, 6a119c1a584aa7a2c6216458f1f272bf1bc93a93, 2a49b025c36ae749cee7ccc4b7e456e02539cdc3, a1edb85e60fdab1e14db63ae8af8db3f0d798fb6, 28f6c37a2910f565b4f5960df52b2eccae28c891, 4262b6eb057d86c7829168c541654fe0d48fdac8, 97e813e6a143edf4208e15c72199c495ed80cea5, 16a544f1e013ba0660612f3fe35393b143b19a84, 4.19.256, 5.4.211, 5.10.137, 5.15.61, 4.14.291, 5.18.18, 5.19.2, 6.0, 0, 4.19.313, 5.4.275, 5.10.216, 5.15.157, 6.1.87, 6.6.28, 6.8.7, 6.9

Timeline

Official Publish: May 20th, 2024
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.