In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: sof_sdw: handle errors on card registration
If the card registration fails, typically because of deferred probes, the device properties added for headset codecs are not removed, which leads to kernel oopses in driver bind/unbind tests.
We already clean-up the device properties when the card is removed, this code can be moved as a helper and called upon card registration errors.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 26, 2025 |
| Ubuntu | — | Upgrade linux-intel-iotg-5.15Upgrade linux-intel-iotgUpgrade linux-lowlatencyUpgrade linux-oracle-5.15Upgrade linux-azureUpgrade linux-oracleUpgrade linux-gcp-5.15Upgrade linux-azure-fde-5.15Upgrade linux-gkeopUpgrade linux-azure-5.15Upgrade linux-nvidiaUpgrade linux-ibmUpgrade linux-hwe-5.15Upgrade linux-riscv-5.15Upgrade linux-kvmUpgrade linux-awsUpgrade linuxUpgrade linux-raspiUpgrade linux-realtimeUpgrade linux-gcpUpgrade linux-gkeUpgrade linux-lowlatency-hwe-5.15Upgrade linux-aws-5.15 | Mar 19, 2025 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub