Impact
In the Linux IOMMU AMD driver, a loop that scans PCI segments can finish without finding a match, leaving a pointer that is not null but points to a list head. The subsequent dereference of this pointer accesses an invalid memory location, causing undefined behavior. This can lead to a kernel crash or accidental memory corruption, potentially resulting in a denial of service. The flaw stems from improper pointer handling and is classified under CWE‑476.
Affected Systems
The vulnerability affects all releases of the Linux kernel that include the AMD IOMMU (iommu/amd) driver before the patch commit. No vendor‑specific version numbers are supplied, so any kernel build containing the exposed code prior to the update is potentially vulnerable.
Risk and Exploitability
The EPSS score is below 1 % and the vulnerability is not listed in CISA KEV, indicating a very low likelihood of exploitation. No CVSS score is provided, but the issue requires a local user to write to an AMD IOMMU debugfs entry, a capability typically limited to root or privileged users. The primary attack vector is therefore a local privileged user, and the impact is limited to system stability rather than remote compromise. The risk is considered low to moderate, with potential for denial of service if an attacker can control the debugfs writes.
OpenCVE Enrichment