CVE-2026-74332

high

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp-sdw-sof: Bound DAI link iteration create_sdw_dailinks() walks sof_dais until it finds an entry with initialised cleared, but sof_dais is allocated with exactly num_ends entries. If all entries are initialised, the loop reads past the end of the array. Pass the allocated entry count to create_sdw_dailinks() and stop before reading past the array.

References

https://git.kernel.org/stable/c/9e82497138abea7d5c6e65015663d907fbcbf6b4

https://git.kernel.org/stable/c/86a64c049873fe4d4a6a378e27a333ab5631c4b2

https://git.kernel.org/stable/c/4d992e63f52d58f52b724606c60ae7b37a1c582f

https://git.kernel.org/stable/c/0a5ff4000dd7a390139dd7823fef1de4963e490a

Details

Source: Mitre, NVD

Published: 2026-08-15

Updated: 2026-08-17

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 8.4

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00168