In the Linux kernel, the following vulnerability has been resolved:
ASoC: codecs: wc938x: fix accessing array out of bounds for enum type
Accessing enums using integer would result in array out of bounds access on platforms like aarch64 where sizeof(long) is 8 compared to enum size which is 4 bytes.
Fix this by using enumerated items instead of integers.
CVSS Details
- CVSS 3.1 Base Score: 7.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Ubuntu | — | Upgrade linux-kvmUpgrade linux-lowlatency-hwe-5.15Upgrade linux-azure-5.15Upgrade linux-oracleUpgrade linux-intel-iotgUpgrade linux-lowlatencyUpgrade linux-gcpUpgrade linux-gkeUpgrade linux-ibmUpgrade linux-azureUpgrade linux-intel-iotg-5.15Upgrade linux-awsUpgrade linux-realtimeUpgrade linux-hwe-5.15Upgrade linuxUpgrade linux-raspi | Mar 19, 2025 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub