Impact
The vulnerability resides in the Linux kernel's UFS core driver. When the transmitter EQTR routine executes while devfreq gear scaling has quiesced the UFS tagset, several allocations are performed with GFP_KERNEL. If a direct memory reclaim is triggered under these conditions, the reclaim or write‑back paths can stall on I/O to a device that is itself quiesced, leading to a deadlock that stalls the scheduler and effectively denies service.
Affected Systems
Any Linux installation that incorporates the UFS core driver without the recent patch is potentially affected. This includes all mainstream distributions distributing affected kernel versions, though exact vulnerable versions have not been enumerated. The issue does not involve specific component versions beyond the kernel itself.
Risk and Exploitability
The EPSS score is below 1 %, indicating that no public exploits are currently known. The mechanism requires the TX EQTR path to run while the UFS queue is quiesced, a state that is usually achieved by local power‑management or intensive I/O workloads. An attacker would therefore need local or root access to trigger the conditions, so the likelihood of exploitation is low but not zero. The vulnerability is not listed in the CISA KEV catalog.
OpenCVE Enrichment