[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-26703":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":54,"related":55,"reserved_at":9,"published_at":64,"modified_at":65,"state":66,"summary":67,"references_raw":76,"kevs":91,"epss":92,"epss_history":95,"metrics":333,"affected":339},"CVE-2024-26703","In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/timerlat: Move hrtimer_init to timerlat_fd open()\n\nCurrently, the timerlat's hrtimer is initialized at the first read of\ntimerlat_fd, and destroyed at close(). It works, but it causes an error\nif the user program open() and close() the file without reading.\n\nHere's an example:\n\n # echo NO_OSNOISE_WORKLOAD > /sys/kernel/debug/tracing/osnoise/options\n # echo timerlat > /sys/kernel/debug/tracing/current_tracer\n\n # cat \u003C\u003CEOF > ./timerlat_load.py\n # !/usr/bin/env python3\n\n timerlat_fd = open(\"/sys/kernel/tracing/osnoise/per_cpu/cpu0/timerlat_fd\", 'r')\n timerlat_fd.close();\n EOF\n\n # ./taskset -c 0 ./timerlat_load.py\n\u003CBOOM>\n\n BUG: kernel NULL pointer dereference, address: 0000000000000010\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 0 P4D 0\n Oops: 0000 [#1] PREEMPT SMP NOPTI\n CPU: 1 PID: 2673 Comm: python3 Not tainted 6.6.13-200.fc39.x86_64 #1\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-1.fc39 04/01/2014\n RIP: 0010:hrtimer_active+0xd/0x50\n Code: 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 0f 1f 44 00 00 48 8b 57 30 \u003C8b> 42 10 a8 01 74 09 f3 90 8b 42 10 a8 01 75 f7 80 7f 38 00 75 1d\n RSP: 0018:ffffb031009b7e10 EFLAGS: 00010286\n RAX: 000000000002db00 RBX: ffff9118f786db08 RCX: 0000000000000000\n RDX: 0000000000000000 RSI: ffff9117a0e64400 RDI: ffff9118f786db08\n RBP: ffff9118f786db80 R08: ffff9117a0ddd420 R09: ffff9117804d4f70\n R10: 0000000000000000 R11: 0000000000000000 R12: ffff9118f786db08\n R13: ffff91178fdd5e20 R14: ffff9117840978c0 R15: 0000000000000000\n FS:  00007f2ffbab1740(0000) GS:ffff9118f7840000(0000) knlGS:0000000000000000\n CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 0000000000000010 CR3: 00000001b402e000 CR4: 0000000000750ee0\n PKRU: 55555554\n Call Trace:\n  \u003CTASK>\n  ? __die+0x23/0x70\n  ? page_fault_oops+0x171/0x4e0\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? avc_has_extended_perms+0x237/0x520\n  ? exc_page_fault+0x7f/0x180\n  ? asm_exc_page_fault+0x26/0x30\n  ? hrtimer_active+0xd/0x50\n  hrtimer_cancel+0x15/0x40\n  timerlat_fd_release+0x48/0xe0\n  __fput+0xf5/0x290\n  __x64_sys_close+0x3d/0x80\n  do_syscall_64+0x60/0x90\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? __x64_sys_ioctl+0x72/0xd0\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? syscall_exit_to_user_mode+0x2b/0x40\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? do_syscall_64+0x6c/0x90\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? exit_to_user_mode_prepare+0x142/0x1f0\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? syscall_exit_to_user_mode+0x2b/0x40\n  ? srso_alias_return_thunk+0x5/0x7f\n  ? do_syscall_64+0x6c/0x90\n  entry_SYSCALL_64_after_hwframe+0x6e/0xd8\n RIP: 0033:0x7f2ffb321594\n Code: 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa 80 3d d5 cd 0d 00 00 74 13 b8 03 00 00 00 0f 05 \u003C48> 3d 00 f0 ff ff 77 3c c3 0f 1f 00 55 48 89 e5 48 83 ec 10 89 7d\n RSP: 002b:00007ffe8d8eef18 EFLAGS: 00000202 ORIG_RAX: 0000000000000003\n RAX: ffffffffffffffda RBX: 00007f2ffba4e668 RCX: 00007f2ffb321594\n RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000003\n RBP: 00007ffe8d8eef40 R08: 0000000000000000 R09: 0000000000000000\n R10: 55c926e3167eae79 R11: 0000000000000202 R12: 0000000000000003\n R13: 00007ffe8d8ef030 R14: 0000000000000000 R15: 00007f2ffba4e668\n  \u003C/TASK>\n CR2: 0000000000000010\n ---[ end trace 0000000000000000 ]---\n\nMove hrtimer_init to timerlat_fd open() to avoid this problem.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-476","NULL Pointer Dereference","The product dereferences a pointer that it expects to be valid but is NULL.","weakness","Stable","Base","Medium",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52],{"_key":25},"SUSE-SU-2024:4387-1",{"_key":27},"SUSE-SU-2024:4314-1",{"_key":29},"SUSE-SU-2024:4316-1",{"_key":31},"SUSE-SU-2024:4318-1",{"_key":33},"UBUNTU-CVE-2024-26703",{"_key":35},"SUSE-SU-2025:20163-1",{"_key":37},"SUSE-SU-2025:20164-1",{"_key":39},"SUSE-SU-2025:20246-1",{"_key":41},"SUSE-SU-2025:20247-1",{"_key":43},"DEBIAN-CVE-2024-26703",{"_key":45},"USN-6895-1",{"_key":47},"USN-6895-2",{"_key":49},"USN-6895-3",{"_key":51},"USN-6895-4",{"_key":53},"USN-6900-1",[],[56,57,58,59,60,61,62,63],{"_key":25},{"_key":27},{"_key":29},{"_key":31},{"_key":35},{"_key":37},{"_key":39},{"_key":41},"2024-04-03T14:55:01.838Z","2026-05-11T20:02:32.960Z","Analyzed",{"cisa_kev":68,"cisa_ransomware":68,"cisa_vendor":9,"epss_severity":69,"epss_score":70,"severity":71,"severity_score":72,"severity_version":73,"severity_source":74,"severity_vector":75,"severity_status":66},false,"low",0.00009,"medium",5.5,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",[77,83,87],{"url":78,"sources":79,"tags":81},"https://git.kernel.org/stable/c/5f703935fdb559642d85b2088442ee55a557ae6d",[80,74],"cve.org",[82],"Patch",{"url":84,"sources":85,"tags":86},"https://git.kernel.org/stable/c/2354d29986ebd138f89c2b73fecf8237e0a4ad6b",[80,74],[82],{"url":88,"sources":89,"tags":90},"https://git.kernel.org/stable/c/1389358bb008e7625942846e9f03554319b7fecc",[80,74],[82],[],{"date":93,"score":70,"percentile":94},"2026-06-03",0.00966,[96,99,101,104,107,110,113,116,118,121,124,126,128,131,134,138,141,144,147,150,153,155,157,160,162,164,167,170,173,176,179,182,185,188,191,194,197,200,203,205,207,209,212,215,218,221,223,225,227,229,231,234,236,239,242,245,248,250,252,254,257,259,261,263,265,267,269,272,275,277,280,283,286,288,290,292,295,297,300,303,305,308,311,313,315,318,321,324,327,330],{"date":97,"score":70,"percentile":98},"2025-11-04",0.00623,{"date":100,"score":70,"percentile":98},"2025-11-05",{"date":102,"score":70,"percentile":103},"2025-11-06",0.00626,{"date":105,"score":70,"percentile":106},"2025-11-07",0.00628,{"date":108,"score":70,"percentile":109},"2025-11-08",0.00627,{"date":111,"score":70,"percentile":112},"2025-11-09",0.00625,{"date":114,"score":70,"percentile":115},"2025-11-10",0.00622,{"date":117,"score":70,"percentile":115},"2025-11-11",{"date":119,"score":70,"percentile":120},"2025-11-12",0.00619,{"date":122,"score":70,"percentile":123},"2025-11-13",0.00617,{"date":125,"score":70,"percentile":115},"2025-11-14",{"date":127,"score":70,"percentile":112},"2025-11-15",{"date":129,"score":70,"percentile":130},"2025-11-16",0.00624,{"date":132,"score":70,"percentile":133},"2025-11-17",0.00621,{"date":135,"score":136,"percentile":137},"2025-11-18",0.00073,0.18347,{"date":139,"score":136,"percentile":140},"2025-11-19",0.18365,{"date":142,"score":136,"percentile":143},"2025-11-20",0.18343,{"date":145,"score":70,"percentile":146},"2025-11-21",0.00635,{"date":148,"score":70,"percentile":149},"2025-11-22",0.00633,{"date":151,"score":70,"percentile":152},"2025-11-23",0.0063,{"date":154,"score":70,"percentile":103},"2025-11-24",{"date":156,"score":70,"percentile":130},"2025-11-25",{"date":158,"score":70,"percentile":159},"2025-11-26",0.00618,{"date":161,"score":70,"percentile":123},"2025-11-27",{"date":163,"score":70,"percentile":133},"2025-11-28",{"date":165,"score":70,"percentile":166},"2025-11-29",0.00636,{"date":168,"score":70,"percentile":169},"2025-11-30",0.00638,{"date":171,"score":70,"percentile":172},"2025-12-01",0.00641,{"date":174,"score":70,"percentile":175},"2025-12-02",0.00639,{"date":177,"score":70,"percentile":178},"2025-12-03",0.00643,{"date":180,"score":70,"percentile":181},"2025-12-04",0.00645,{"date":183,"score":70,"percentile":184},"2025-12-05",0.00652,{"date":186,"score":70,"percentile":187},"2025-12-06",0.0065,{"date":189,"score":70,"percentile":190},"2025-12-07",0.00649,{"date":192,"score":70,"percentile":193},"2025-12-08",0.00653,{"date":195,"score":70,"percentile":196},"2025-12-09",0.00666,{"date":198,"score":70,"percentile":199},"2025-12-10",0.00675,{"date":201,"score":70,"percentile":202},"2025-12-11",0.00674,{"date":204,"score":70,"percentile":199},"2025-12-12",{"date":206,"score":70,"percentile":202},"2025-12-13",{"date":208,"score":70,"percentile":202},"2025-12-14",{"date":210,"score":70,"percentile":211},"2025-12-15",0.00667,{"date":213,"score":70,"percentile":214},"2025-12-16",0.00671,{"date":216,"score":70,"percentile":217},"2025-12-17",0.00673,{"date":219,"score":70,"percentile":220},"2025-12-18",0.00672,{"date":222,"score":70,"percentile":202},"2025-12-19",{"date":224,"score":70,"percentile":217},"2025-12-20",{"date":226,"score":70,"percentile":220},"2025-12-21",{"date":228,"score":70,"percentile":202},"2025-12-22",{"date":230,"score":70,"percentile":202},"2025-12-23",{"date":232,"score":70,"percentile":233},"2025-12-24",0.00677,{"date":235,"score":70,"percentile":233},"2025-12-25",{"date":237,"score":70,"percentile":238},"2025-12-26",0.00682,{"date":240,"score":70,"percentile":241},"2025-12-27",0.0068,{"date":243,"score":70,"percentile":244},"2025-12-28",0.00678,{"date":246,"score":70,"percentile":247},"2025-12-29",0.00676,{"date":249,"score":70,"percentile":202},"2025-12-30",{"date":251,"score":70,"percentile":214},"2025-12-31",{"date":253,"score":70,"percentile":202},"2026-01-01",{"date":255,"score":70,"percentile":256},"2026-01-02",0.00679,{"date":258,"score":70,"percentile":238},"2026-01-03",{"date":260,"score":70,"percentile":220},"2026-01-04",{"date":262,"score":70,"percentile":199},"2026-01-05",{"date":264,"score":70,"percentile":247},"2026-01-06",{"date":266,"score":70,"percentile":202},"2026-01-07",{"date":268,"score":70,"percentile":256},"2026-01-08",{"date":270,"score":70,"percentile":271},"2026-01-09",0.00687,{"date":273,"score":70,"percentile":274},"2026-01-10",0.00688,{"date":276,"score":70,"percentile":271},"2026-01-11",{"date":278,"score":70,"percentile":279},"2026-01-12",0.00686,{"date":281,"score":70,"percentile":282},"2026-01-13",0.00685,{"date":284,"score":70,"percentile":285},"2026-01-14",0.00684,{"date":287,"score":70,"percentile":271},"2026-01-15",{"date":289,"score":70,"percentile":271},"2026-01-16",{"date":291,"score":70,"percentile":271},"2026-01-17",{"date":293,"score":70,"percentile":294},"2026-01-18",0.00691,{"date":296,"score":70,"percentile":271},"2026-01-19",{"date":298,"score":70,"percentile":299},"2026-01-20",0.00683,{"date":301,"score":70,"percentile":302},"2026-01-21",0.00681,{"date":304,"score":70,"percentile":238},"2026-01-22",{"date":306,"score":70,"percentile":307},"2026-01-23",0.00689,{"date":309,"score":70,"percentile":310},"2026-01-24",0.00693,{"date":312,"score":70,"percentile":310},"2026-01-25",{"date":314,"score":70,"percentile":310},"2026-01-26",{"date":316,"score":70,"percentile":317},"2026-01-27",0.00697,{"date":319,"score":70,"percentile":320},"2026-01-28",0.00695,{"date":322,"score":70,"percentile":323},"2026-01-29",0.00698,{"date":325,"score":70,"percentile":326},"2026-01-30",0.00707,{"date":328,"score":70,"percentile":329},"2026-01-31",0.00712,{"date":331,"score":70,"percentile":332},"2026-02-01",0.00716,[334],{"source":74,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":335,"cvss_v4_0":9},{"baseScore":72,"baseSeverity":336,"vectorString":75,"impactScore":337,"exploitabilityScore":338},"MEDIUM",6,4.6,[340,360],{"ecosystem":9,"name":341,"vendor":342,"product":342,"cpe_part":343,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":344},"Linux","linux","a",[345,352,355,358],{"version":346,"is_range":347,"range_type":80,"version_start":348,"version_start_type":349,"version_end":350,"version_end_type":351,"fixed_in":9},">= e88ed227f639ebcb31ed4e5b88756b47d904584b, \u003C 5f703935fdb559642d85b2088442ee55a557ae6d",true,"e88ed227f639ebcb31ed4e5b88756b47d904584b","including","5f703935fdb559642d85b2088442ee55a557ae6d","excluding",{"version":353,"is_range":347,"range_type":80,"version_start":348,"version_start_type":349,"version_end":354,"version_end_type":351,"fixed_in":9},">= e88ed227f639ebcb31ed4e5b88756b47d904584b, \u003C 2354d29986ebd138f89c2b73fecf8237e0a4ad6b","2354d29986ebd138f89c2b73fecf8237e0a4ad6b",{"version":356,"is_range":347,"range_type":80,"version_start":348,"version_start_type":349,"version_end":357,"version_end_type":351,"fixed_in":9},">= e88ed227f639ebcb31ed4e5b88756b47d904584b, \u003C 1389358bb008e7625942846e9f03554319b7fecc","1389358bb008e7625942846e9f03554319b7fecc",{"version":359,"is_range":68,"range_type":80,"version_start":359,"version_start_type":349,"version_end":359,"version_end_type":349,"fixed_in":9},"6.5",{"ecosystem":9,"name":361,"vendor":342,"product":362,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":364},"linux kernel","linux_kernel","o",[365,369,373,375],{"version":366,"is_range":347,"range_type":367,"version_start":359,"version_start_type":349,"version_end":368,"version_end_type":351,"fixed_in":9},"gte6.5_lt6.6.18","cpe","6.6.18",{"version":370,"is_range":347,"range_type":367,"version_start":371,"version_start_type":349,"version_end":372,"version_end_type":351,"fixed_in":9},"gte6.7_lt6.7.6","6.7","6.7.6",{"version":374,"is_range":68,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc1",{"version":376,"is_range":68,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc2"]