Impact
When the DRM MSM scheduler initialization fails, the cleanup path incorrectly calls drm_sched_fini on partially initialized resources, leading to a kernel crash. The bug was uncovered by static analysis and confirmed by source review and results in an abrupt termination of the system or module, compromising availability. The vulnerability does not provide a remote control path and is limited to the system that loads the affected module.
Affected Systems
The flaw exists in the Linux kernel’s DRM MSM component. All kernel releases that ship the drm/msm module carry the risk if the module fails to initialize. No specific version numbers are listed in the advisory, so any kernel version that includes this code path is potentially vulnerable.
Risk and Exploitability
No CVSS score is supplied; however, the EPSS score is below 1% and it is not listed in the CISA KEV catalog, indicating a low likelihood of exploitation. Attackers would need to trigger a module load failure or a system boot scenario that paths the faulty cleanup, which is a local‑only vector. The impact is denial of service rather than code execution or privilege escalation.
OpenCVE Enrichment