Impact
The Linux kernel BPF interpreter incorrectly allows fallback for arena-related instructions such as ST/LDX/STX. Because these operations are unsupported by the interpreter, executing them triggers a BUG_ON assertion that causes a kernel panic. The issue manifests when a BPF program containing an unsupported opcode is loaded and executed. This flaw represents a defect classified as CWE-398.
Affected Systems
All implementations of the Linux kernel are affected, as indicated by the generic CPE string for the Linux kernel. No specific version range is listed, so any kernel version prior to the applied fix may be vulnerable. Products and distributions that ship the default kernel without the recent patch are at risk.
Risk and Exploitability
The EPSS score for this vulnerability is less than 1%, indicating a low probability of widespread exploitation. It is not listed in the CISA KEV catalog. Exploitation would require the ability to load a crafted BPF program that uses arena instructions; the likely attack vector is local or remote with sufficient permissions to load BPF programs. This inference is based on the requirement that a BPF program must be loaded to trigger the BUG_ON. Once triggered, the failure path leads to a kernel panic, which effectively denies service.
OpenCVE Enrichment