Impact
The vulnerability is a double free within the Linux kernel’s RDMA/pvrdma driver, triggered when pvrdma_uar_free() is called twice on the same context. This kernel memory corruption can cause a kernel panic or other instability, resulting in a denial of service if an attacker can execute the error path.
Affected Systems
All Linux kernel versions before the inclusion of the fix commit as listed in the kernel source. The flaw resides within the RDMA/pvrdma driver included in the standard Linux kernel distribution.
Risk and Exploitability
Because the issue is a kernel-level double free, an attacker who can trigger the error path—most likely through crafted RDMA traffic or a local privileged context—may cause a crash. The EPSS score of < 1% and the CVSS score of 7.8 indicate low probability of spontaneous exploitation, and the vulnerability is not listed in CISA KEV. Nevertheless, the potential for a kernel crash justifies prompt action.
OpenCVE Enrichment
Debian DLA
Ubuntu USN