Impact
An issue occurs in the PCI handling for Rockchip devices when a root bus is removed during a concurrent rescan or hotplug operation. The race condition can lead to a use‑after‑free or a system crash, destabilizing the system and potentially allowing a denial‑of‑service or subsequent escalation if an attacker can trigger the crash.
Affected Systems
Linux kernel systems that include the Rockchip PCI driver. Any kernel version before the commit adding pci_rescan_remove_lock has the vulnerability. This applies to distributions shipping that kernel version with Rockchip devices.
Risk and Exploitability
The CVSS score is not provided, and the EPSS score is unavailable, so the precise risk is unknown. However, because the flaw requires stopping and removing a root PCI bus—an operation normally privileged—it is likely a local attack vector. The impact of a successful race is a crash, which could serve as a foothold for further exploitation. The vulnerability is not listed in the CISA KEV catalog, indicating no confirmed exploitation in the wild to date.
OpenCVE Enrichment