CVE-2025-68344
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/12/2025
Last modified:
29/12/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
ALSA: wavefront: Fix integer overflow in sample size validation<br />
<br />
The wavefront_send_sample() function has an integer overflow issue<br />
when validating sample size. The header->size field is u32 but gets<br />
cast to int for comparison with dev->freemem<br />
<br />
Fix by using unsigned comparison to avoid integer overflow.



