Impact
The Linux kernel bug causes a double free of a blktrans device during the cleanup path of the mtdswap subsystem. The erroneous release path frees the device twice, corrupting the kernel heap. This kernel memory corruption could enable an attacker to execute arbitrary code in privileged mode or crash the system. The flaw corresponds to a double‑free weakness.
Affected Systems
The issue affects Linux kernel implementations that include the mtdswap subsystem and register blktrans devices for debugfs. No version numbers are listed, but any kernel build containing this code path may be susceptible.
Risk and Exploitability
The exploit probability per EPSS is less than 1% and the vulnerability is not in the CISA KEV catalog. The flaw relies on a local scenario where a write failure in mtdswap cleanup triggers the double free, so an adversary with kernel write access could exploit it for elevation of privilege or denial of service. Because the risk is low in most environments, the overall threat rating is moderate unless the vulnerable code path is in active use.
OpenCVE Enrichment
Debian DLA
Debian DSA