Impact
The vulnerability originates from the scmi_protocol_table_register function in the Linux kernel's ARM SCMI driver. When a later entry in the same ID table fails, the function can leave earlier successful requests registered while keeping references to the driver's ID table. If the module storage is released, these references become dangling pointers, leading to a use‑after‑free condition. This flaw can cause memory corruption or crash the kernel, potentially leading to denial of service. The weakness corresponds to use‑after‑free (CWE‑416).
Affected Systems
The affected product is the Linux kernel, specifically the ARM SCMI implementation used for secure communication between processor cores. No specific kernel version is listed as affected by the CVE, so all kernel releases that include the unpatched ARM SCMI firmware interface are potentially vulnerable. This includes all distributions and vendors that ship the kernel with the ARM SCMI driver without the patch that removes the partial registration issue.
Risk and Exploitability
The EPSS score is reported to be less than 1 %, indicating a very low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog, suggesting no known active exploits at this time. The flaw requires the ability to load or interact with ARM SCMI drivers that register protocol tables, which typically requires kernel‑level privileges or the presence of a malicious or buggy driver. Thus, exploitation is likely limited to privileged or compromised environments. The risk is considered moderate, with the primary threat being potential denial of service via kernel crash, but the likelihood of a successful exploit remains low.
OpenCVE Enrichment
Debian DLA
Debian DSA