Impact
A use‑after‑free occurs in the Linux ab8500 fuel‑gauge driver when the kernel removes the driver. The removal function destroys the driver workqueue while threaded interrupt handlers are still armed. Those handlers can subsequently queue work on a freed queue, corrupting memory. This flaw is a classic Use‑After‑Free, which can lead to arbitrary kernel code execution or a system crash during the removal window.
Affected Systems
The bug is embedded in the ab8500 fuel‑gauge driver that ships with all Linux kernel versions that include support for this hardware. Any distribution using a kernel that has not applied the upstream fix is susceptible. Since no specific patch level is mentioned, all kernels prior to the commit that resolves the issue may be affected.
Risk and Exploitability
The EPSS score is below 1 % and the vulnerability is not listed in the CISA KEV catalog, indicating that exploitation is unlikely in the wider ecosystem. However, exploitation is possible when an attacker can trigger the driver unload or system shutdown while interrupts are still active, which could lead to arbitrary code execution in kernel mode. The attack vector is inferred from the description: it most likely requires local or privileged access to cause the driver to unload or to provoke interrupt activity during shutdown. The overall risk is high due to the severity of the flaw, but the likelihood of exploitation remains low in typical environments.
OpenCVE Enrichment