-

CVE-2026-93187

ASoC: SOF: ipc4-topology: Return error for invalid number of formats

In the Linux kernel, the following vulnerability has been resolved:

ASoC: SOF: ipc4-topology: Return error for invalid number of formats

When the number of input or output formats is zero,
sof_ipc4_widget_setup_comp_src() and sof_ipc4_widget_setup_comp_asrc()
print an error and jump to the cleanup label. At that point 'ret' is
still 0, because the earlier sof_ipc4_get_audio_fmt() call succeeded, so
the function returns success and the caller never finds out that the
widget setup actually failed.

Set ret to -EINVAL before the goto so the error gets reported.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 21a5adffad463344e9aca6ee697f45a079cb3ef5
Version < 4992cdc4eb97981d6ea66002c5b764a6115edb0c
Status affected
Version 21a5adffad463344e9aca6ee697f45a079cb3ef5
Version < 11e828cd6b0f283ebe9dc6b4cffd38e3321e7725
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 7.2
Status affected
Version 0
Version < 7.2
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.074
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/4992cdc4eb97981d6ea66002c5b764a6115edb0c
https://git.kernel.org/stable/c/11e828cd6b0f283ebe9dc6b4cffd38e3321e7725