Impact
The vulnerability arises from a lifetime management flaw in the Linux kernel's CXL Memory Control Engine notifier. The notifier was freed prematurely. When the kernel later accessed the stale notifier reference during a machine‑exception event, it performed a NULL pointer dereference or a use-after‑free, causing a kernel crash. The weakness is a classic invalid memory reference (CWE-476).
Affected Systems
All Linux kernel releases that contain the pre‑fix notifier implementation are affected. The fix is included in commits referenced in the CVE description and is available in kernel versions that incorporate those changes. Systems running any older kernel that has not been updated to include those commits remain vulnerable.
Risk and Exploitability
The CVSS score of 7.8 classifies the flaw as high severity. The EPSS score of < 1 % indicates a very low exploitation probability. The CVE is not listed in the CISA KEV catalog. Because the flaw requires a CXL device to trigger the notifier and a machine‑exception event, the attack surface is narrow. The likely attack vector is an attacker with ability to cause or observe a machine‑exception on a system with CXL support. Given these constraints, widespread exploitation is unlikely, but the kernel crash results in denial of service, so timely patching is essential.
OpenCVE Enrichment