Impact
A null pointer dereference occurs in the Linux airspy media driver during a device disconnect while streaming. When the device is disconnected, the driver clears the USB device handle, but the stop‑streaming routine later attempts to use this cleared handle, leading to a kernel panic. The failure is a local denial of service: an attacker with access to the /dev/airspy device can crash the system by triggering the disconnect path while streaming is active.
Affected Systems
The flaw is in the Linux kernel’s airspy driver, affecting all Linux systems that load the airspy module. No specific kernel versions are listed, so any distribution using a kernel that includes the unpatched airspy driver is potentially impacted.
Risk and Exploitability
The CVSS score is not provided, but the EPSS score is reported as < 1%, suggesting a very low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is local: an attacker must obtain physical or local access to the airspy device to induce the disconnect while streaming.
OpenCVE Enrichment
Debian DLA
Debian DSA