-
CVE-2026-93808
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:43
- Zuletzt bearbeitet 03.10.2026 11:17:50
- Erkennungen
ALSA: usb-audio: caiaq: validate EP1 reply lengths
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: caiaq: validate EP1 reply lengths usb_ep1_command_reply_dispatch() uses buf[0] as a command byte and then reads command-specific fixed items from the same URB buffer. Several paths use buf + 1, buf[1], buf[2], or buf + 3 without first proving that urb->actual_length contains those bytes. Add per-command length checks, use a payload length derived from the bytes after the command byte for the control-state copy, and reject short analog input payloads before the input helper reads fixed offsets from the EP1 reply.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
91acd231f219452fa58285239f83945accad9513
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
7cc6b3745a0cea697c8d0684b3094f220281a08d
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
add9328c91c195c494cd68a21b19e5e47a20d784
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
319393151367e6626affedcdd4f7b7b0286f4246
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
af8a172c4f71ac30d625f2966d2389a7fa872819
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
74f3c639f64fa5da4e1613149798b5089bce2807
Status
affected
Version
523f1dce37434a9a6623bf46e7893e2b4b10ac3c
Version <
aba30af07d4fe499b50209801eba9da8a815522f
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
2.6.22
Status
affected
Version
0
Version <
2.6.22
Status
unaffected
Version <=
5.10.*
Version
5.10.271
Status
unaffected
Version <=
5.15.*
Version
5.15.222
Status
unaffected
Version <=
6.1.*
Version
6.1.189
Status
unaffected
Version <=
6.6.*
Version
6.6.158
Status
unaffected
Version <=
6.12.*
Version
6.12.111
Status
unaffected
Version <=
6.18.*
Version
6.18.53
Status
unaffected
Version <=
*
Version
7.2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.052 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/af8a172c4f71ac30d625f2966d2389a7fa872819
https://git.kernel.org/stable/c/74f3c639f64fa5da4e1613149798b5089bce2807
https://git.kernel.org/stable/c/aba30af07d4fe499b50209801eba9da8a815522f
https://git.kernel.org/stable/c/319393151367e6626affedcdd4f7b7b0286f4246
https://git.kernel.org/stable/c/7cc6b3745a0cea697c8d0684b3094f220281a08d
https://git.kernel.org/stable/c/91acd231f219452fa58285239f83945accad9513
https://git.kernel.org/stable/c/add9328c91c195c494cd68a21b19e5e47a20d784