← Back to CVE List
CVE-2026-74295NVD
Vulnerability Summary
In the Linux kernel, the following vulnerability has been resolved:
ASoC: codecs: hdac_hdmi: Validate written enum value
hdac_hdmi_set_pin_port_mux() uses the written enum value to index the
texts array before calling snd_soc_dapm_put_enum_double(), which validates
that the value is within the enum item range.
An out-of-range value can therefore make the driver read past the texts
array before the helper rejects the write. Move the lookup after the helper
has accepted the value.
ASoC: codecs: hdac_hdmi: Validate written enum value
hdac_hdmi_set_pin_port_mux() uses the written enum value to index the
texts array before calling snd_soc_dapm_put_enum_double(), which validates
that the value is within the enum item range.
An out-of-range value can therefore make the driver read past the texts
array before the helper rejects the write. Move the lookup after the helper
has accepted the value.
CVSS v3.1 Base Metrics
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityNone
AvailabilityHigh
External References
- https://git.kernel.org/stable/c/0b08baeccdcf52fad328ad645f5b4fbee04eea34
- https://git.kernel.org/stable/c/216336418c007c4b44c650acf2fd3d2de5bb81e8
- https://git.kernel.org/stable/c/7f02e9064b6f84e7f93c72f134306271eb4f7de4
- https://git.kernel.org/stable/c/8cbf24714d6b3f553fc959632c9781176a73a9a7
- https://git.kernel.org/stable/c/9131e4b023e0db5764680034bdc94aeae0b0f33d
- https://git.kernel.org/stable/c/bc464a6a9e352daa17b1636c090cf3185710b9a0
- https://git.kernel.org/stable/c/d8961b5c7889b6ecc00f1409d36826df1665df27