Impact
A use-after-free occurs when the PCI plda driver removes an IRQ domain while IRQs requested with devm_request_irq() are still scheduled for deferred cleanup. When the deferred free_irq() runs, which can cause a kernel crash. This flaw could lead no evidence of remote code execution is indicated.
Affected Systems
The vulnerability exists in the Linux kernel’s plda driver for PCI devices. Any kernel containing the pre‑patch code without the later resolved plda driver is affected. The patch was verified on a StarFive VisionFive v1.2A board.
Risk and Exploitability
The CVSS score of 4.1 indicates a low‑severity flaw primarily affecting availability. The EPSS score is < 1%, indicating a very low exploitation probability, and the flaw is not listed in the CISA KEV catalog. The likely attack vector is local, as the flaw requires the driver to be unloaded or the device to be removed, which an attacker can trigger by manipulating PCI devices or by provoking driver unload/reload events. The exploitability condition is that the device must be removed after driver initialization, a path that typically requires local access or privilege escalation.
OpenCVE Enrichment
Debian DSA