Impact
The Renesas interrupt controller driver in the Linux kernel allocates generic interrupt chips during probe, but when the driver is removed the domain flags lack IRQ_DOMAIN_FLAG_DESTROY_GC, so the allocated chips are not freed. The leaked chip structures remain on a global list and can be accessed by suspend, resume, or shutdown callbacks after the driver has been removed, resulting in a use‑after‑free that can crash the kernel. The issue is a resource leak (CWE‑825) affecting kernel stability.
Affected Systems
Any Linux kernel that includes the renesas‑irqc driver before this patch is affected. The CVE does not specify distinct release numbers, so any system running a kernel version that contains the pre‑fix driver is potentially vulnerable.
Risk and Exploitability
The CVSS score of 5.5 indicates moderate severity, and the EPSS score of < 1 % shows a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Likely, an attacker would need privileged local access to unload or remove the driver, or could trigger hot‑plug events that cause the driver to be removed; this assessment is inferred from the fact that the bug manifests during driver removal. Because the exploit path depends on local system control, the attack vector is probably local or requires high privileges. A kernel crash can lead to denial of service and may potentially allow privilege escalation if an attacker can recover from the crash.
OpenCVE Enrichment
Debian DLA
Debian DSA