Impact
The Linux kernel’s memory migration code incorrectly retains a stale swapcache mapping after a folio has been freed, leading to an invalid reference count assertion and a BUG. Based on the description, it is inferred that this flaw could trigger a kernel panic, potentially causing the system to halt abruptly and disrupting all operations on the affected host.
Affected Systems
All Linux kernel releases that compile the mm/migrate_device subsystem are impacted, as the vulnerability resides in kernel code that is present in standard indicates any Linux kernel release; no product‑specific version range is specified, so any kernel build susceptible to this code path is considered at risk until the patch is applied.
Risk and Exploitability
The CVSS score of 7.8 signals high severity. The EPSS of less than 1% indicates a very low likelihood of real‑world exploitation, and the vulnerability is not listed in CISA’s KEV catalog. Based on the description, it is inferred that an attacker would need local privilege or the ability to influence kernel memory layout to trigger the fault, while remote exploitation is unlikely because the flaw requires internal kernel operations.
OpenCVE Enrichment
Debian DSA