Impact
A defect in the Linux kernel’s Lima DRM driver causes the allocator drm_mm_init to be called before the virtual address range is initialized, leading to a kernel assertion failure and a system crash. The failure occurs when va_start and va_end remain zero, so drm_mm_init receives an invalid range and triggers a BUG. The consequence is a kernel panic that disrupts system operation and results in a loss of availability.
Affected Systems
All Linux kernel releases that include the Lima DRM driver are affected, including the 7.0.10-postmarketos-exynos4 kernel and other versions using the same buggy sequence. The issue is specific to systems that load the Lima driver during boot or device initialization.
Risk and Exploitability
The EPSS score is below 1%, indicating a very low probability of exploitation as reflected in current data. The flaw does not provide a remote code‑execution path; it requires interaction with the device driver during initialization. The vulnerability is not listed in the CISA KEV catalog, and no CVSS score is supplied, but the kernel panic demonstrates a high impact on availability for affected systems.
OpenCVE Enrichment
Debian DLA
Debian DSA