Impact
This kernel flaw occurs when an Intel BE201 Wi‑Fi 7 firmware crashes, causing a restart flag to be set. The driver still dequeues frames from the operating system’s transmit queue and attempts to transmit them over a dead firmware channel. Each attempt fails, causing an immediate free of the frame and a tight loop of dequeuing, sending, freeing, and allocating new skbs. The resulting rapid allocation churn consumes CPU cycles and leads to slab fragmentation, putting pressure on system memory. The vulnerability can degrade performance or drop packets, potentially resulting in a denial of service for network traffic on the affected device.
Affected Systems
Vendors: Linux kernel. Products: All Linux kernel builds that include the iwlwifi driver for Intel BE201 Wi‑Fi 7 hardware. The fix is included in newer releases.
Risk and Exploitability
The CVSS score of 7.5 indicates significant impact, while the EPSS score of less than 1% signals a low probability of widespread exploitation. The vulnerability is not listed in the CISA KEV catalog, but the lack of a public exploit should not reduce the need for correction. Attackers would need to trigger a firmware crash in high‑throughput scenarios; the exploit is inherent to normal device operation, making prevention via patching the most effective defense.
OpenCVE Enrichment
Ubuntu USN