CVE-2026-74294
Published: August 18, 2026Last modified: September 28, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: ASoC: meson: aiu: Validate written enum values The AIU HDMI and internal codec mux put callbacks use the written enum value with snd_soc_enum_item_to_val() before checking whether the value is valid for the enumeration. Reject out-of-range values before converting the enum item, matching the validation already done by the G12A HDMI and internal codec mux controls.
Severity score breakdown
| Parameter | Value |
|---|---|
| Base score | 7.3 |
| Attack Vector | LOCAL |
| Attack complexity | LOW |
| Privileges required | LOW |
| User interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality | HIGH |
| Integrity impact | LOW |
| Availability impact | HIGH |
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H |
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Vulnerable (6.1.182-r0) |
| 25 LTS | linux-lts | Fixed (6.12.111-r0) | |
| Stream | linux-lts | Fixed (6.18.53-r0) |
References
- https://git.kernel.org/stable/c/0965892cc486ca554d72eeb62d85ccf8d0137a5a
- https://git.kernel.org/stable/c/8a6d6735e7c02e88841cca1497ff3d8089f2ef24
- https://git.kernel.org/stable/c/90703664dbc5a4bf3d84f649404318f3cafdbe69
- https://git.kernel.org/stable/c/91797708f99e4a910ab019760069c0a7e00a6fc0
- https://git.kernel.org/stable/c/96f5b92d958bc34500500f29fab8e0b908f25397
- https://git.kernel.org/stable/c/d65adf85477247be04ac86886f8edfaa047b5d4a