In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: sof_sdw: handle errors on card registration
If the card registration fails, typically because of deferred probes, the device properties added for headset codecs are not removed, which leads to kernel oopses in driver bind/unbind tests.
We already clean-up the device properties when the card is removed, this code can be moved as a helper and called upon card registration errors.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 26, 2025 |
| Ubuntu | — | Upgrade linux-awsUpgrade linux-raspiUpgrade linuxUpgrade linux-gkeUpgrade linux-lowlatency-hwe-5.15Upgrade linux-gcpUpgrade linux-realtimeUpgrade linux-aws-5.15Upgrade linux-gcp-5.15Upgrade linux-lowlatencyUpgrade linux-hwe-5.15Upgrade linux-intel-iotg-5.15Upgrade linux-oracle-5.15Upgrade linux-azure-5.15Upgrade linux-azureUpgrade linux-oracleUpgrade linux-nvidiaUpgrade linux-riscv-5.15Upgrade linux-gkeopUpgrade linux-azure-fde-5.15Upgrade linux-intel-iotgUpgrade linux-kvmUpgrade linux-ibm | Mar 19, 2025 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub