Critical Alert 1 Active Exploit Detected Today

CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

← Back to CVE List

CVE-2026-90196NVD

Vulnerability Summary

In the Linux kernel, the following vulnerability has been resolved:

ASoC: SOF: validate topology volume range before allocation

SOF treats the topology mixer min and max values as non-negative indices
into its volume table. It stores them in signed fields, allocates max + 1
entries through an int argument, and later indexes the table with the
stored range.

An inverted range is invalid, while a maximum at or above INT_MAX cannot
be represented safely after the increment or in the signed fields.
Validate the complete range before storing it or allocating the table.
Severity Level
UNKNOWN
Published Date
Sep 17, 2026
Last Modified
Sep 17, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
0.21%Probability
Root Weakness (CWE)
N/A

Affected & Patched Versions

Affected Versions
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < 992e130b888699d18da901b593d7a0fb75041a03
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < cd63a1eb677e9548ba2d512be5dac4cb474ae145
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < 8e1d63f5e272061208455b5aa4cc0d5bcbe5c1a8
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < d2f41287b51a3261d447ae38000f7a6f5860663a
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < 72d0b77412aef2cec554cc84e176658f2a48dafa
  • Linux Linux >= 311ce4fe7637d96608b6e57bf9ebbd8aabcf429e and < a698e4a60fa54268a38f4e66378851a196cb139b
  • Linux Linux >= 5.2
Patched Versions
  • Linux Linux 992e130b888699d18da901b593d7a0fb75041a03
  • Linux Linux cd63a1eb677e9548ba2d512be5dac4cb474ae145
  • Linux Linux 8e1d63f5e272061208455b5aa4cc0d5bcbe5c1a8
  • Linux Linux d2f41287b51a3261d447ae38000f7a6f5860663a
  • Linux Linux 72d0b77412aef2cec554cc84e176658f2a48dafa
  • Linux Linux a698e4a60fa54268a38f4e66378851a196cb139b
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.