Impact
This bug in the SCMI transport subsystem causes the kernel to incorrectly match transport devices when destroying SCMI children. If duplicate protocol channel entries are present, the kernel attempts to reuse an existing transport device and then later destroys it when the duplicate IDR insertion fails. This improper teardown can lead to the removal of an already‑registered device and may destabilize the kernel, potentially resulting in a crash.
Affected Systems
All Linux kernel releases that include SCMI support prior to the application of the fix. The vulnerability is present in the generic Linux kernel on all vendors that ship it (Linux:Linux). No specific kernel version ranges are listed; the affected code is the SCMI transport layer.
Risk and Exploitability
The EPSS score is below 1%, indicating a very low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog, and no CVSS score is provided in the data. Exploitation would likely require a user to supply malformed firmware or privileged access to modify SCMI child nodes, making it a local‑level, firmware‑based attack vector.
OpenCVE Enrichment