Impact
In the Linux kernel, the Qualcomm SCM driver can dereference a NULL pointer in the IRQ handler before __scm is published. This ordering bug, introduced during probe, triggers a kernel null pointer dereference. The crash leads to loss of kernel stability and can be seen as a denial‑of‑service condition for the affected system.
Affected Systems
The flaw is present in the Linux kernel’s qcom_scm implementation across all versions before the fix was applied. No specific version numbers are listed, so any kernel containing the pre‑patch driver code is potentially vulnerable.
Risk and Exploitability
The EPSS score of <1% indicates that exploitation is considered unlikely, and the vulnerability is not in the CISA KEV list. Because the fault occurs during hardware interrupt handling, it requires local physical or privileged access to trigger the IRQ, making remote exploitation improbable. An attacker with such access could force the kernel to crash, disrupting service but not gaining elevated privileges directly.
OpenCVE Enrichment
Debian DLA
Debian DSA