Impact
A race condition in the Linux kernel’s RAID subsystem caused the bitmap to be destroyed before the detach routine waited for ongoing behind‑write operations to finish. When the bitmap is torn down while writes are still in flight, those writes can reference freed memory. This results in a use‑after‑free that can corrupt data or cause a kernel panic. The vulnerability is local to systems running affected kernel versions and does not provide network‑based exploitation paths.
Affected Systems
All Linux kernel releases prior to the patch applied in late 2026 are affected. The flaw is present in the generic ‘linux_kernel’ product regardless of distribution, as the revision is a core kernel change. No specific kernel version range is listed in the current data, so any system not yet updated to the fixed commit set is susceptible.
Risk and Exploitability
The EPSS score is reported as <1 %, indicating a very low probability of exploitation. The flaw is not listed in the CISA KEV catalog, and no CVSS score is provided in the data. Exploitation requires an attacker to be able to initiate behind‑write operations on a RAID device while the bitmap is in the process of being torn down—conditions unlikely to be met without local privilege. Consequently, the risk is considered low to moderate, mainly affecting data integrity and system stability.
OpenCVE Enrichment