Impact
The Linux arm64 kernel has a path that handles errors from the sleep‑q suspend mechanism (swsusp). When swsusp_mte_save_tags() fails, the routine returns to swsusp_arch_suspend() with the DAIF register masked. The DAIF bits control the masking of interrupts; if they remain set, the processor will not process any interrupts until cleared. This flaw can cause the kernel to hang, resulting in loss of scheduled tasks, network service, or any interrupt‑driven activity. The vulnerability is an internal state‑management error and does not provide a remote exploitation route; however, a local or privileged user can trigger it by inducing a suspend failure or attempting to hibernate the system.
Affected Systems
All Linux kernels running on arm64 architecture are impacted if they include the buggy error path before the patch that restores the saved DAIF state. The CPE string reflects an overall Linux kernel, and no specific version range is supplied, meaning any arm64 kernel build that predates the fix is potentially vulnerable.
Risk and Exploitability
The EPSS score is reported as less than 1 % and the vulnerability is not listed in CISA KEV, indicating a very low recent exploitation probability. The CVSS score is not provided. Because the flaw requires local or privileged code to trigger a suspend failure, the attack vector is local or privileged. Consequently, the risk to availability is limited to environments where the failed suspend path can be invoked, and no remotely exploitable payload exists.
OpenCVE Enrichment
Debian DLA
Debian DSA