PT-2026-82199 · Linux · Linux Kernel

CVE-2026-80583

·

Published

2026-08-26

·

Updated

2026-08-29

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel ASoC (affected versions not specified)
Description An issue exists in the lpass-tx-macro codec where the controls from "DEC0 MODE" to "DEC7 MODE" are enumerated, but the functions tx macro dec mode get() and tx macro dec mode put() incorrectly access their values through ucontrol->value.integer.value[0] instead of ucontrol->value.enumerated.item[0]. On 64-bit kernels compiled with CONFIG SND CTL DEBUG, this leads to an access overflow where 4 bytes are written past the enumerated item, causing reads of these controls to fail with -EINVAL.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-97680
CVE-2026-80583

Affected Products

Linux Kernel