PT-2026-82199 · Linux · Linux Kernel
CVE-2026-80583
·
Published
2026-08-26
·
Updated
2026-08-29
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux Kernel ASoC (affected versions not specified)
Description
An issue exists in the lpass-tx-macro codec where the controls from "DEC0 MODE" to "DEC7 MODE" are enumerated, but the functions
tx macro dec mode get() and tx macro dec mode put() incorrectly access their values through ucontrol->value.integer.value[0] instead of ucontrol->value.enumerated.item[0]. On 64-bit kernels compiled with CONFIG SND CTL DEBUG, this leads to an access overflow where 4 bytes are written past the enumerated item, causing reads of these controls to fail with -EINVAL.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel