Impact
A use‑after‑free flaw has been found in the Linux kernel’s atcspi200 SPI driver. When the driver is unbound while DMA transfers are still in progress, the DMA resources are freed after the controller is still alive, leading to a use‑after‑free that can corrupt kernel memory. This memory corruption can allow a local attacker to gain elevated privileges or cause a denial of service. The vulnerability is captured by CWE‑416 and CWE‑825.
Affected Systems
The flaw affects the Linux kernel, specifically the atcspi200 SPI driver module. No version range is listed in the current data, but any kernel build that includes the affected driver and does not incorporate the specified commits is vulnerable. The affected vendor/product is Linux:Linux and the common identifier is cpe:2.3:o:linux:linux_kernel:*.
Risk and Exploitability
The EPSS score is < 1%, and the vulnerability is not listed in CISA’s KEV catalog, indicating no known public exploitation. The use‑after‑free in a core kernel component, however, indicates a moderate risk potential for exploitation if an attacker can trigger driver unbind during DMA activity. The CVSS score of 5.5 indicates a medium severity, suggesting that while the vulnerability is not critical, it can still be leveraged for privilege escalation or denial of service.
OpenCVE Enrichment