Impact
In the Linux kernel, a bug was found where folios that were not suitable for writeback were removed from a batch without first invoking the required memory‑management routine. This omission violates kernel memory‑management contracts and can lead to memory corruption. An attacker could trigger a kernel panic or cause a denial‑of‑service condition for the entire system.
Affected Systems
All Linux kernel configurations that incorporate the Ceph subsystem and are running a version earlier than 6.18 are affected. The issue applies to both major Linux vendor releases, as implied by the generic kernel CPE classification.
Risk and Exploitability
The EPSS score is not available, the CVSS rating is not provided, and the vulnerability is not listed in the CISA KEV catalog. The description does not detail an attack vector or the required privileges. Typical kernel memory‑management bugs of this type would generally necessitate local access with elevated privileges, but this remains an inference based on the class of vulnerability.
OpenCVE Enrichment