CVE-2025-40097

medium

Description

In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix missing pointer check in hda_component_manager_init function The __component_match_add function may assign the 'matchptr' pointer the value ERR_PTR(-ENOMEM), which will subsequently be dereferenced. The call stack leading to the error looks like this: hda_component_manager_init |-> component_match_add |-> component_match_add_release |-> __component_match_add ( ... ,**matchptr, ... ) |-> *matchptr = ERR_PTR(-ENOMEM); // assign |-> component_master_add_with_match( ... match) |-> component_match_realloc(match, match->num); // dereference Add IS_ERR() check to prevent the crash. Found by Linux Verification Center (linuxtesting.org) with SVACE.

References

https://git.kernel.org/stable/c/b044aa6ae63391ba40c93ca5d476d276cb17db1b

https://git.kernel.org/stable/c/47d1b9ca923b55c3f407788f1f15b04957e0e027

https://git.kernel.org/stable/c/218a8504e62fc2c8a1fd12523346b7a2b9bd2474

https://git.kernel.org/stable/c/1cf11d80db5df805b538c942269e05a65bcaf5bc

https://git.kernel.org/stable/c/1c3f4b15eb1850558d7d4da74b98cffbb8121721

https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-36981

Details

Source: Mitre, NVD

Published: 2025-10-30

Updated: 2026-10-03

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00018