CVE-2026-89749

UnknownEPSS 0.20%

Last modified

CVE-2026-89749 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash passing ERR_PTR to kthread_stop() event_test_stuff() calls kthread_run() and unconditionally passes the returned task_struct pointer to kthread_stop(). kthread_run() returns an error pointer such as ERR_PTR(-ENOMEM) when kthread creation fails, for example under memory pressure during the boot-time event self-test. kthread_stop() then dereferences the invalid pointer, crashing the kernel. Check the result of kthread_run() before passing it to kthread_stop(). EPSS estimates a 0.20% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash passing ERR_PTR to kthread_stop() event_test_stuff() calls kthread_run() and unconditionally passes the returned task_struct pointer to kthread_stop(). kthread_run() returns an error pointer such as ERR_PTR(-ENOMEM) when kthread creation fails, for example under memory pressure during the boot-time event self-test. kthread_stop() then dereferences the invalid pointer, crashing the kernel. Check the result of kthread_run() before passing it to kthread_stop(). Use WARN_ON() so that a failure to create the self-test thread does not go unnoticed, matching the ring-buffer self-test fix in commit 91542863abad ("ring-buffer: Fix crash passing ERR_PTR to kthread_stop()").

Metrics

EPSS Probability
0.20%

10.0th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < c1a4fb7aa290f158d50654d640292e49d9055fd1; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < 42ccb215ef0a552acbbd32f81009bfe4b278ba77; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < 98d06fb9865a490e12ebe32d65b9ffac6108614d; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < ceb1707aef5824cf024eb82d10787b7621e2ff35; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < 12a499f741fc5be3731c8b0a0d909406575cc2eb; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < adadf4192f700bca82abfda9fa6d58c0bf37cc04; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < c40e0b4fa365969e67011529eabdfb66d1022256; >= e6187007d6c365b551c69ea3df46f06fd1c8bd19, < 649bc7df3e5d7be6f7996a95084037dbf3cad1e5
LinuxLinux2.6.31

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89749?
In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash passing ERR_PTR to kthread_stop() event_test_stuff() calls kthread_run() and unconditionally passes the returned task_struct pointer to kthread_stop(). kthread_run() returns an error pointer such as ERR_PTR(-ENOMEM) when kthread creation fails, for example under memory pressure during the boot-time event self-test. kthread_stop() then dereferences the invalid pointer, crashing the kernel. Check the result of kthread_run() before passing it to kthread_stop(). Use WARN_ON() so that a failure to create the self-test thread does not go unnoticed, matching the ring-buffer self-test fix in commit 91542863abad ("ring-buffer: Fix crash passing ERR_PTR to kthread_stop()").
How severe is CVE-2026-89749?
Severity scoring for CVE-2026-89749 is pending analysis. The EPSS model estimates a 0.20% probability of exploitation in the next 30 days.
How do I fix CVE-2026-89749?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89749?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST