In the Linux kernel, the following vulnerability has been resolved:
ASoC: rt7*-sdw: harden jack_detect_handler
Realtek headset codec drivers typically check if the card is instantiated before proceeding with the jack detection.
The rt700, rt711 and rt711-sdca are however missing a check on the card pointer, which can lead to NULL dereferences encountered in driver bind/unbind tests.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 26, 2025 |
| Ubuntu | — | Upgrade linux-nvidiaUpgrade linux-gkeopUpgrade linux-gcpUpgrade linux-kvmUpgrade linux-gkeUpgrade linux-realtimeUpgrade linux-azure-fde-5.15Upgrade linux-gcp-5.15Upgrade linux-raspiUpgrade linux-oracleUpgrade linux-riscv-5.15Upgrade linux-azure-5.15Upgrade linux-aws-5.15Upgrade linux-oracle-5.15Upgrade linux-intel-iotgUpgrade linux-lowlatencyUpgrade linux-ibmUpgrade linux-awsUpgrade linux-intel-iotg-5.15Upgrade linux-lowlatency-hwe-5.15Upgrade linux-hwe-5.15Upgrade linux-azureUpgrade linux | Mar 19, 2025 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub