Impact
The Linux kernel’s UDF 1.50 virtual partition mapping uses the VAT to map physical blocks. entry count to be used, enabling a crafted image to read past the allocated VAT table. This out‑of-bounds read can trigger a kernel panic via KASAN, causing a denial of service and potentially leaking memory contents.
Affected Systems
All Linux kernel builds affected by the bug, identified by commit 0e35b9b6ec0ffcc5e23cbdec09f5c622ad532b53 and earlier. The issue appears in the UDF subsystem of the kernel; any distribution that includes the unpatched kernel is susceptible. The vulnerability exists in any kernel version that implements UDF 1.50 virtual partition mapping.
Risk and Exploitability
The CVSS score is 4.0. The EPSS score is < 1%, indicating that exploitation probability is low, and the vulnerability is not in the CISA KEV catalog. Because the flaw manifests during UDF filesystem processing, an attacker must supply a malicious UDF image that is mounted by the system, requiring physical access or control over removable media. Based on the description, it is inferred that the attack vector is local or via removable media, leading primarily to a denial of service; exploitation for arbitrary code execution is not documented.
OpenCVE Enrichment