Impact
The Linux kernel eventfs subsystem contains a flaw where the list heads of an eventfs_inode are not initialized in init_ei(). When eventfs_create_dir() fails during allocation due to memory pressure, the failure path calls free_ei() before initialization; this triggers checks that incorrectly report the inode as having children, producing a false warning message. The flaw does not allow data disclosure, code execution, or escalation of privileges, and is classified as CWE-824.
Affected Systems
All Linux kernel implementations that include the upstream code prior to the inclusion of commit 1704aaaf5d22 are affected, which encompasses the default kernels shipped by major distributions and custom builds that have not been updated. The fix was introduced in the referenced commit, so any kernel compiled from that point forward contains the initialized list heads.
Risk and Exploitability
The EPSS score is below 1%, indicating a very low probability of exploitation, and the vulnerability is not listed in CISA’s KEV catalog. Attackers cannot leverage the logged false warning to affect confidentiality, integrity, or availability; the impact is limited to misleading diagnostic information and potential operational confusion. Consequently, the overall risk remains low.
OpenCVE Enrichment
Debian DSA