{
  "affected": [
    {
      "ecosystem_specific": {
        "urgency": "not yet assigned"
      },
      "package": {
        "ecosystem": "Debian:13",
        "name": "linux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "ecosystem_specific": {
        "urgency": "not yet assigned"
      },
      "package": {
        "ecosystem": "Debian:14",
        "name": "linux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "details": "In the Linux kernel, the following vulnerability has been resolved:  tracing: Take the reference before publishing the named histogram trigger  event_hist_trigger_named_init() puts the trigger on the global named_triggers list and only then takes the reference on the trigger it shares its histogram with:  \tdata-\u003eref++;  \tsave_named_trigger(data-\u003enamed_data-\u003ename, data);  \tret = event_hist_trigger_init(data-\u003enamed_data); \tif (ret \u003c 0) { \t\tkfree(data-\u003ecmd_ops); \t\tdata-\u003ecmd_ops = \u0026trigger_hist_cmd; \t}  \treturn ret;  event_hist_trigger_init() fails when alloc_hist_pad() cannot allocate, and nothing takes the trigger back off the list on the way out. event_hist_trigger_parse() frees it, and the next lookup by name reads the freed object:   BUG: KASAN: slab-use-after-free in find_named_trigger+0xac/0xc0  Read of size 8 at addr ffff888009346860 by task init/1   find_named_trigger+0xac/0xc0   hist_register_trigger+0xc1/0xa00   event_hist_trigger_parse+0x3146/0x6af0   event_trigger_write+0xce/0x160  Freed by task 67:   kfree+0x154/0x420   trigger_kthread_fn+0xfd/0x160  Do the reference first and publish once it has succeeded, so that nothing which can fail runs after the trigger becomes findable.",
  "id": "DEBIAN-CVE-2026-97919",
  "modified": "2026-09-26T04:47:40.556901089Z",
  "published": "2026-09-25T11:17:18.923Z",
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://security-tracker.debian.org/tracker/CVE-2026-97919"
    }
  ],
  "upstream": [
    "CVE-2026-97919"
  ]
}