Impact
A use‑after‑free race condition exists in the Linux kernel slip driver. During a regular sl_sync() operation the entry has already been freed by a concurrent slip_close() flow, causing an invalid memory access that triggers a kernel Oops and a system crash. The flaw does not provide direct code execution but results in a denial of service and loss of kernel integrity.
Affected Systems
All Linux kernel are vulnerable. Any kernel build that ships with the slip driver and has not yet integrated the fix for the race is susceptible. The affected code exists in the core network stack; therefore users of the to verify if the patch is applied.
Risk and Exploitability
The CVSS vector gives a score of 7.8, indicating high severity. The EPSS score of <1% and the vulnerability is not listed in the CISA KEV catalog. Exploiting the flaw requires the ability to trigger the race condition, which typically needs root or kernel‑module privileges. Consequently, while the potential impact is severe, the overall risk to a non‑privileged system is considered low.
OpenCVE Enrichment
Debian DSA