Impact
The vulnerability stems from the i915 driver’s probe routine incorrectly assuming that driver_data is always present. When a device is forced‑bound via sysfs driver_override, pci_match_device() can return a dummy entry whose driver_data field is NULL. The probe code casts this NULL pointer to a struct intel_device_info and then dereferences it, leading to a null pointer dereference that causes a kernel crash. This results in a loss of availability as the kernel panics and the system becomes unresponsive.
Affected Systems
All Linux kernels that ship the i915 graphics driver before the commit 2727922084672cc274ecea726ea00363c2893731. The affected product is the Linux kernel; any distribution running an unpatched kernel version is susceptible.
Risk and Exploitability
The flaw only triggers a local denial of service; it does not allow privilege escalation or arbitrary code execution. The exploitation probability is very low (EPSS < 1%) and the vulnerability is not yet listed in the CISA Known Exploited Vulnerabilities catalog. An attacker would need local access to modify the sysfs driver_override attribute for an i915 device to force the driver to load and expose the bug. Given the low probability and local nature, the overall risk remains modest, but a patch should be applied to eliminate the crash risk.
OpenCVE Enrichment
Debian DLA
Debian DSA