CVE-2026-80743
Published: September 8, 2026Last modified: September 8, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: ASoC: xilinx: formatter_pcm: pass aud_drv_data to irq handlers The irq handlers take a struct device pointer and call dev_get_drvdata() to obtain the driver data. However, the driver data is only set at the end of probe, after devm_request_irq(), so an interrupt taken in between causes the handlers to pass a NULL pointer to readl() and crash. Pass the private data directly as the devm_request_irq() argument instead of the device pointer, matching what the handlers expect.
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Vulnerable (6.1.182-r0) |
| 25 LTS | linux-lts | Vulnerable (6.12.103-r0) | |
| Stream | linux-lts | Fixed (6.18.46-r0) |
References
- https://git.kernel.org/stable/c/09e4c486348e176c083f8bee9169ae8f408cf8d1
- https://git.kernel.org/stable/c/0d58a70b6dc7b65772e3ef7c43beb91882cf9ed5
- https://git.kernel.org/stable/c/721cfeb0b9572084435695ae535411b921d1ea68
- https://git.kernel.org/stable/c/7d857aec162fb02d10ce326aecc1ac7509c31f43
- https://git.kernel.org/stable/c/a85315f2eb06adc5597a7103e1910fc7d0d35ffd
- https://git.kernel.org/stable/c/b4ef887bee4d3c177adac5d1eab8b2de31b08ac3
- https://git.kernel.org/stable/c/f12afefb7b01f94d6d66d397f323a9914edbf70e
- https://git.kernel.org/stable/c/f51a540b14eecb8667bbe450192318271b87631e