Impact
The Linux kernel treats Status Update VDOs from USB‑Type‑C DisplayPort alternate modes incorrectly by failing to validate the count field. A malformed or malicious device can therefore send an invalid count, causing the kernel to read uninitialized stack data and transmit that information elsewhere, which could leak sensitive kernel state.
Affected Systems
All Linux kernel builds that include DisplayPort alternate‑mode support prior to the merge commit that added the count validation fix are vulnerable. This includes any kernel release before the hot‑fix, regardless of major or minor version, as long as alt‑mode support is compiled in.
Risk and Exploitability
The CVSS score of 5.5 signals moderate severity; the EPSS score of less than 1 % indicates a low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attacker must physically connect a malicious USB‑Type‑C device to the host to trigger the bug. An exploit could expose uninitialized stack contents but does not provide persistence or remote code execution.
OpenCVE Enrichment
Ubuntu USN