Impact
The Linux kernel suffered a double–free of a pseudo‑locked group’s RMID. The free list for RMIDs was incorrectly updated twice, corrupting the rmid_free_lru linked list. This kind of kernel memory corruption can allow an attacker to crash the system or, if exploited further, execute code in kernel mode.
Affected Systems
All Linux distributions that include the resctrl subsystem of the Linux kernel are affected. No specific kernel version range is listed, so any release that has not yet applied the described patch is potentially vulnerable.
Risk and Exploitability
No CVSS score or EPSS value is provided, leaving the quantitative severity uncertain. Based on the nature of a double‑free in kernel space, the risk is high because it can lead to memory corruption; however, the exploit requires privileged interaction with the resctrl filesystem, so an attack is likely to be local or require initial escalation. The vulnerability is not listed in CISA’s KEV catalog, suggesting no known widespread exploitation at this time.
OpenCVE Enrichment