CVE-2026-23309: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: tracing: Add NULL pointer check to trigger_data_free() If trigger_data_alloc() fails and returns NULL, event_hist_trigger_parse() jumps to the out_free error path. While kfree() safely handles a NULL pointer, trigger_data_free() does not. This causes a NULL pointer dereference in trigger_data_free() when evaluating data->cmd_ops->set_filter. Fix the problem by adding a NULL pointer check to trigger_data_free(). The problem was found by an experimental code review agent based on gemini-3.1-pro while reviewing backports into v6.18.y.
Affected products
- Linux Linux Kernel: from 6.1.165, before 6.1.167 (fixed in 6.1.167); from 6.6.128, before 6.6.130 (fixed in 6.6.130); from 6.12.75, before 6.12.77 (fixed in 6.12.77); from 6.18.14, before 6.18.17 (fixed in 6.18.17); from 6.19.4, before 6.19.7 (fixed in 6.19.7); version 7.0 only
Published 2026-03-25. Last modified 2026-06-17.