{"id":"CVE-2026-98032","published":"2026-09-25T11:17:31.900","lastModified":"2026-09-25T11:17:31.900","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing: Fix subbuf resize races with trace_pipe_raw readers\n\nConcurrent subbuffer resizes may crash trace_pipe_raw readers or leak\nuninitialized memory to userspace due to stale size values.\n\nModify ring_buffer_alloc_read_page() to handle the resizing of an\nexisting buffer_data_read_page if necessary and add a new\nring_buffer_read_page_size(). This new function enables ring-buffer\nbuffer_data_read_page users to not call the racy\nring_buffer_subbuf_size_get(). This makes the spare_size member of\nftrace_buffer_info redundant.\n\nFinally, handle buffer_data_read_page/reader_page order discrepancy in\nring_buffer_read_page(). On a mismatch simply copy manually the data to\nthe buffer_data_read_page.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/75b37b8369778b69ce9738d1c97685a1615cb252","tags":[]},{"url":"https://git.kernel.org/stable/c/dae8dda341d2d9034a90d59e8a7d502e1263813f","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}