Characteristics, Root Causes, and Detection of Incomplete Security Bug Fixes in the Linux Kernel

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Liu, Qiang, Zhang, Wenlong, Jiang, Muhui, Wu, Lei, Zhou, Yajin
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866908669493379072
author Liu, Qiang
Zhang, Wenlong
Jiang, Muhui
Wu, Lei
Zhou, Yajin
author_facet Liu, Qiang
Zhang, Wenlong
Jiang, Muhui
Wu, Lei
Zhou, Yajin
contents Security bugs in the Linux kernel emerge endlessly and have attracted much attention. However, fixing security bugs in the Linux kernel could be incomplete due to human mistakes. Specifically, an incomplete fix fails to repair all the original security defects in the software, fails to properly repair the original security defects, or introduces new ones. In this paper, we study the fixes of incomplete security bugs in the Linux kernel for the first time, and reveal their characteristics, root causes, as well as detection. We first construct a dataset of incomplete security bug fixes in the Linux kernel and answer the following three questions. What are the characteristics of incomplete security bug fixes in the Linux kernel? What are the root causes behind them? How should they be detected to reduce security risks? We then have the three main insights in the following. (*Due to the notification of arXiv "The Abstract field cannot be longer than 1,920 characters", the appeared Abstract is shortened. For the full Abstract, please download the Article.)
format Preprint
id arxiv_https___arxiv_org_abs_2511_17799
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Characteristics, Root Causes, and Detection of Incomplete Security Bug Fixes in the Linux Kernel
Liu, Qiang
Zhang, Wenlong
Jiang, Muhui
Wu, Lei
Zhou, Yajin
Cryptography and Security
Security bugs in the Linux kernel emerge endlessly and have attracted much attention. However, fixing security bugs in the Linux kernel could be incomplete due to human mistakes. Specifically, an incomplete fix fails to repair all the original security defects in the software, fails to properly repair the original security defects, or introduces new ones. In this paper, we study the fixes of incomplete security bugs in the Linux kernel for the first time, and reveal their characteristics, root causes, as well as detection. We first construct a dataset of incomplete security bug fixes in the Linux kernel and answer the following three questions. What are the characteristics of incomplete security bug fixes in the Linux kernel? What are the root causes behind them? How should they be detected to reduce security risks? We then have the three main insights in the following. (*Due to the notification of arXiv "The Abstract field cannot be longer than 1,920 characters", the appeared Abstract is shortened. For the full Abstract, please download the Article.)
title Characteristics, Root Causes, and Detection of Incomplete Security Bug Fixes in the Linux Kernel
topic Cryptography and Security
url https://arxiv.org/abs/2511.17799