PT-2026-34933 · Linux+3 · Linux Kernel+3

CVE-2026-31581

·

Published

2026-04-10

·

Updated

2026-08-30

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free issue exists in the ALSA 6fire component. In the usb6fire chip abort() function, the chip structure is allocated as the card's private data. When snd card free when closed() is executed and no file handles are open, the card and the embedded chip are freed synchronously. This causes a subsequent write operation to chip->card = NULL to target freed slab memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:25120
ALSA-2026:25121
ALSA-2026:25191
ALSA-2026:25217
BDU:2026-12572
CVE-2026-31581
ECHO-5B41-56D9-3E61
OPENSUSE-SU-2026:10703-1
OPENSUSE-SU-2026:21555-1
RHSA-2026:25120
RHSA-2026:25121
RHSA-2026:25191
RHSA-2026:25217
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23193-1
SUSE-SU-2026:23194-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
SUSE-SU-2026:23241-1
SUSE-SU-2026:23244-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3166-1
USN-8488-1
USN-8488-2
USN-8507-1
USN-8567-1
USN-8569-1
USN-8574-1
USN-8574-2
USN-8574-3
USN-8575-1
USN-8575-2
USN-8575-3
USN-8576-1
USN-8576-2
USN-8595-1
USN-8595-2
USN-8595-3
USN-8596-1
USN-8597-1
USN-8603-1
USN-8606-1
USN-8607-1
USN-8608-1
USN-8609-1
USN-8610-1
USN-8619-1
USN-8620-1
USN-8620-2
USN-8620-3
USN-8620-4
USN-8665-1
USN-8668-1

Affected Products

Linuxmint
Linux Kernel
Rocky Linux
Ubuntu