Impact
A flaw in the Linux kernel's BPF implementation allows an attacker to replace a per‑cpu array inner map with a smaller one. The system fails to enforce the same maximum entry count, enabling a lookup to read beyond the bounds of an array. This out‑of‑bounds read can corrupt kernel memory and potentially lead to privilege escalation or system instability.
Affected Systems
The vulnerability is present in all Linux kernel distributions, as the affected component is part of the core Linux kernel code. No specific vendor or vendor‑specific product versioning information is provided, but all systems running a kernel version that has not yet applied the patch are affected.
Risk and Exploitability
The CVSS score is not provided, but the lack of an EPSS score and absence from the CISA KEV catalog suggest limited publicly known exploitation. The vulnerability requires kernel‑level BPF map manipulation and therefore a suitable attacker already with limited local access to load or modify BPF programs. Once the vulnerability is triggered, it can result in kernel panic or privilege escalation, making it a high‑risk condition for systems that expose BPF interfaces to untrusted users or code.
OpenCVE Enrichment