CVE-2026-64480

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/07/2026
Last modified:
25/07/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> ALSA: ice1712: check snd_ctl_new1() return value<br /> <br /> snd_ctl_new1() can return NULL when memory allocation fails. The<br /> ice1712 driver calls snd_ctl_new1() without checking the return value<br /> before dereferencing the pointer in multiple places (ice1712.c,<br /> ice1724.c, aureon.c), which can lead to NULL pointer dereferences.<br /> <br /> Add NULL checks after snd_ctl_new1() calls and return -ENOMEM if any<br /> fails.

Impact