CVE-2026-64484
Published: July 29, 2026Last modified: July 29, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: ALSA: es1938: check snd_ctl_new1() return value snd_ctl_new1() can return NULL when memory allocation fails. snd_es1938_mixer() does not check the return value before dereferencing the pointer, which can lead to a NULL pointer dereference. Add a NULL check after snd_ctl_new1() and return -ENOMEM if it fails.
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Vulnerable (6.1.177-r0) |
| 25 LTS | linux-lts | Vulnerable (6.12.95-r0) | |
| Stream | linux-lts | Vulnerable (6.18.38-r0) |
References
- https://git.kernel.org/stable/c/1949163dee39e0e4a1468f37dd7302962f6af45a
- https://git.kernel.org/stable/c/1edd1f02dddd20aeb6066ded41017615766ea42f
- https://git.kernel.org/stable/c/41759affbcfe3d51a32900da9547a1ffd744a85f
- https://git.kernel.org/stable/c/6c4efebaf73e217efbd08cdbda805758a7db3680
- https://git.kernel.org/stable/c/7531a37720c2545a480fd0fa464978569bf9d6a2
- https://git.kernel.org/stable/c/96cad5bd7d0a176db3fdc06717a41271247336bd
- https://git.kernel.org/stable/c/9e53e99b6fa3cd82992d963cbff58dbbd1df8651
- https://git.kernel.org/stable/c/af01c48e17a66fa038af210a5c49d6cdefd210bd