Impact
The rt9455 power-supply driver removal or a probe failure, some of those work items are not cancelled in the required order. Consequently, a queued work function can execute after the driver’s data structure has already been freed, causing an use-after-free that leads to a kernel crash. The flaw is identified as CWE‑825.
Affected Systems
Any Linux kernel configuration that includes the rt9455 driver is vulnerable; the affected builds are all those produced before the patch that implements the correct cancellation sequence. The vendor list shows the driver belongs to Linux:Linux, so the issue spans the mainline kernel and all distributions that ship it unmodified.
Risk and Exploitability
The CVSS score of 8.4 indicates high severity. The EPSS score of less than 1% suggests a low probability of exploitation, and the vulnerability is not listed in CISA’s KEV catalog, implying no public exploitation activity has been observed. The likely attack vector requires local access to interfere with the device – for example, triggering a removal or a probe-failure path – because the vulnerability is tied to kernel driver internals and is not exposed through user-space interfaces.
OpenCVE Enrichment
Debian DSA