Impact
The dm array driver in the Linux kernel incorrectly accepts a block whose value_size does not match the caller's expected size, causing an out‑of‑bounds read during array traversal. This flaw can expose parts of kernel memory and lead to kernel memory corruption. The weakness is identified as CWE‑843, inconsistent type usage.
Affected Systems
The vulnerability affects the dm array component of the Linux kernel. All deployments of the Linux kernel that include the device‑mapper array feature are potentially vulnerable until a patch is applied. No specific kernel versions are listed, so the risk applies to any current kernel that implements the device‑mapper array feature.
Risk and Exploitability
The likely attack vector is the modification of dm array metadata on a block device by an attacker with local or privileged access. The CVSS score of 7.8 indicates high severity, and the vulnerability is not listed in the CISA KEV catalog. The EPSS score is reported as less than 1%, indicating a very low probability of exploitation. As a result, the likelihood of exploitation remains low in environments that use dm array on untrusted metadata, while production systems with strict configuration controls may face even lower risk.
OpenCVE Enrichment
Debian DSA