Impact
The vulnerability is a logic flaw in the Linux kernel’s mhi_wwan_mbim driver that allows a modem to construct a cyclic or self‑referencing Network Data Path (NDP) chain. When the driver’s receive routine traverses the chain, the loop only terminates when the next offset is zero; it never checks that the offsets are strictly increasing. An attacker feeding a malformed NDP can cause the driver to spin forever on a single CPU core, consuming 100% of that core’s capacity. The impact is a denial‑of‑service that can render the system unresponsive if the affected driver is active.
Affected Systems
All Linux kernel builds that include the mhi_wwan_mbim driver are potentially affected. The specific kernel versions are not enumerated in the data, so any kernel containing the unpatched commit is at risk until the patch is applied.
Risk and Exploitability
The CVSS score is not provided, and EPSS data is unavailable, so the exact quantitative risk cannot be derived. However, the exploit requires interaction with the modem’s networking stack, which suggests a local or privilege‑escalated attacker could supply the malicious data. There is no evidence that automated exploits are currently in use or that the vulnerability is listed in CISA’s KEV catalog. The destructive potential of a CPU‑exhaustion loop is significant, especially on systems with limited cores or in multi‑tenant environments.
OpenCVE Enrichment