Linux Kernel ALSA asihpi: OOB Access Fix in find_control
CVE-2026-64133 Published on July 19, 2026
ALSA: asihpi: Fix potential OOB array access at reading cache
In the Linux kernel, the following vulnerability has been resolved:
ALSA: asihpi: Fix potential OOB array access at reading cache
find_control() to retrieve a cached info accesses the array with the
given index blindly, which may lead to an OOB array access.
Add a sanity check for avoiding it.
Products Associated with CVE-2026-64133
stack.watch emails you whenever new vulnerabilities are published in Linux Kernel or Canonical Ubuntu Linux. Just hit a watch button to start following.
Affected Versions
Linux:- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below e060e21fe9cca1e5eafd8a1c597026577771e8d9 is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 34d0d492a2812b9289af14bca3573a89275965b2 is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below ffa29cea7bf9a4ef2ea8084967f142e0301ac670 is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 7b6f8c8eb93f02a74b1de8e521c0952af10d1f43 is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 8778386e4387b28f2bf8425d7ffc667c6294457f is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 61c5017c64e2ac9e10b70b14b17a079dbc0a805f is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 7d107239935793995bdc6cf29bb99e180bde4c28 is affected.
- Version 719f82d3987aad4cc9f46d19c35f362672545cad and below 7b7d6572145c1dab2dd9bfb550b188e5f0ff3c3f is affected.
- Version 2.6.35 is affected.
- Before 2.6.35 is unaffected.
- Version 5.10.258, <= 5.10.* is unaffected.
- Version 5.15.209, <= 5.15.* is unaffected.
- Version 6.1.175, <= 6.1.* is unaffected.
- Version 6.6.142, <= 6.6.* is unaffected.
- Version 6.12.92, <= 6.12.* is unaffected.
- Version 6.18.34, <= 6.18.* is unaffected.
- Version 7.0.11, <= 7.0.* is unaffected.
- Version 7.1, <= * is unaffected.