CVE-2026-64371

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/07/2026
Last modified:
25/07/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> proc: protect ptrace_may_access() with exec_update_lock (part 1)<br /> <br /> Fix the easy cases where procfs currently calls ptrace_may_access() without<br /> exec_update_lock protection, where the fix is to simply add the extra lock<br /> or use mm_access():<br /> <br /> - do_task_stat(): grab exec_update_lock<br /> - proc_pid_wchan(): grab exec_update_lock<br /> - proc_map_files_lookup(): use mm_access() instead of get_task_mm()<br /> - proc_map_files_readdir(): use mm_access() instead of get_task_mm()<br /> - proc_ns_get_link(): grab exec_update_lock<br /> - proc_ns_readlink(): grab exec_update_lock

Impact