-
CVE-2026-97930
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:46
- Zuletzt bearbeitet 03.10.2026 11:18:10
- Erkennungen
ALSA: usbusx2y: fix in04_last array size mismatch with in04_buf
In the Linux kernel, the following vulnerability has been resolved:
ALSA: usbusx2y: fix in04_last array size mismatch with in04_buf
The in04_last array in struct usx2ydev is declared as char[24], but
in04_buf is allocated as sizeof(struct us428_ctls) which is 21 bytes.
In i_usx2y_in04_int(), when ctl_snapshot_last == -2 (initialization
path):
memcpy(usx2y->in04_last, usx2y->in04_buf, sizeof(usx2y->in04_last));
This copies 24 bytes from a 21-byte slab allocation, reading 3 bytes
past the end of the source object.
Introduce a USX2Y_IN04_SIZE constant defined as sizeof(struct
us428_ctls) and use it consistently for the in04_last array, the
in04_buf allocation, the URB transfer length, and the comparison loop,
replacing the bare 24 and 21 literals throughout.Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
e75e4b0e647137f4c9f6dee4a7ef5b7b09e16f57
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
869fb83c072e884b80d93eab498e6040ffb010ba
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
d170cfbe38c8817ac787f605655546a6d343017d
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
229cab526580f82839ae8e4e379753c8cf16952e
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
381495b5b3da12d714e53d9d12d955b13fe26eac
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
b5753bdfd909f7f095fb464d67802b5e52cbadbf
Status
affected
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Version <
861111a14740e12c36d363e9830f8daa734279c9
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
2.6.12
Status
affected
Version
0
Version <
2.6.12
Status
unaffected
Version <=
5.15.*
Version
5.15.222
Status
unaffected
Version <=
6.1.*
Version
6.1.189
Status
unaffected
Version <=
6.6.*
Version
6.6.158
Status
unaffected
Version <=
6.12.*
Version
6.12.111
Status
unaffected
Version <=
6.18.*
Version
6.18.53
Status
unaffected
Version <=
7.2.*
Version
7.2.7
Status
unaffected
Version <=
*
Version
7.3-rc3
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.2% | 0.088 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/229cab526580f82839ae8e4e379753c8cf16952e
https://git.kernel.org/stable/c/381495b5b3da12d714e53d9d12d955b13fe26eac
https://git.kernel.org/stable/c/b5753bdfd909f7f095fb464d67802b5e52cbadbf
https://git.kernel.org/stable/c/861111a14740e12c36d363e9830f8daa734279c9
https://git.kernel.org/stable/c/869fb83c072e884b80d93eab498e6040ffb010ba
https://git.kernel.org/stable/c/d170cfbe38c8817ac787f605655546a6d343017d
https://git.kernel.org/stable/c/e75e4b0e647137f4c9f6dee4a7ef5b7b09e16f57