๐Ÿ” CVE Alert

CVE-2025-21847

MEDIUM 5.5

ASoC: SOF: stream-ipc: Check for cstream nullity in sof_ipc_msg_data()

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: stream-ipc: Check for cstream nullity in sof_ipc_msg_data() The nullity of sps->cstream should be checked similarly as it is done in sof_set_stream_data_offset() function. Assuming that it is not NULL if sps->stream is NULL is incorrect and can lead to NULL pointer dereference.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Mar 12, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
090349a9feba3ceee3997d31d68ffe54e5b57acb < 2b3878baf90918a361a3dfd3513025100b1b40b6 090349a9feba3ceee3997d31d68ffe54e5b57acb < 62ab1ae5511c59b5f0bf550136ff321331adca9f 090349a9feba3ceee3997d31d68ffe54e5b57acb < 6c18f5eb2043ebf4674c08a9690218dc818a11ab 090349a9feba3ceee3997d31d68ffe54e5b57acb < d8d99c3b5c485f339864aeaa29f76269cc0ea975
Linux / Linux
6.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/2b3878baf90918a361a3dfd3513025100b1b40b6 git.kernel.org: https://git.kernel.org/stable/c/62ab1ae5511c59b5f0bf550136ff321331adca9f git.kernel.org: https://git.kernel.org/stable/c/6c18f5eb2043ebf4674c08a9690218dc818a11ab git.kernel.org: https://git.kernel.org/stable/c/d8d99c3b5c485f339864aeaa29f76269cc0ea975