Back

MEDIUM

Linux Kernel BPF libbpf.c find_prog_by_sec_insn null pointer dereference

Published Oct 19, 2022

Description

A vulnerability was found in Linux Kernel. It has been classified as problematic. This affects the function find_prog_by_sec_insn of the file tools/lib/bpf/libbpf.c of the component BPF. The manipulation leads to null pointer dereference. It is recommended to apply a patch to fix this issue. The identifier VDB-211749 was assigned to this vulnerability.

Affected products

Remediation

Red Hat statement

Red Hat Enterprise Linux 6 and 7 are not affected by this issue as they did not include CO-RE relocations support for multi-prog sections (upstream commit db2b8b0)

Red Hat mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Metrics

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Oct 19, 2022
Updated Nov 3, 2025
Reserved Oct 19, 2022
CISA Vulnrichment
Updated Apr 14, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Oct 8, 2022