Impact
The vulnerability arises in the Linux device‑mapper array header validation, where array_block_check() verifies only blocknr and checksum, leaving structural fields‑bounds read during dm_array_cursor_next() when the on‑disk entry count exceeds a block’s capacity, potentially exposing kernel memory or triggering a fault that could result in information disclosure or crash.
Affected Systems
Linux kernels that include the dm-array module are affected. This includes any distribution that uses the device‑mapper array feature and any kernel revision prior to the applied fix.
Risk and Exploitability
The CVSS score of 5.1 indicates moderate severity. EPSS indicates a very low likelihood of exploitation (<1%), and the vulnerability is not listed in the CISA KEV catalog. The CVE entry does not specify the attack vector or required privileges, so the exact scope and ease of exploitation cannot be determined from the data.
OpenCVE Enrichment