๐Ÿ” CVE Alert

CVE-2026-23078

UNKNOWN 0.0

ALSA: scarlett2: Fix buffer overflow in config retrieval

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Fix buffer overflow in config retrieval The scarlett2_usb_get_config() function has a logic error in the endianness conversion code that can cause buffer overflows when count > 1. The code checks `if (size == 2)` where `size` is the total buffer size in bytes, then loops `count` times treating each element as u16 (2 bytes). This causes the loop to access `count * 2` bytes when the buffer only has `size` bytes allocated. Fix by checking the element size (config_item->size) instead of the total buffer size. This ensures the endianness conversion matches the actual element type.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Feb 4, 2026
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
ac34df733d2dfe3b553897a1e9e1a44414f09834 < d5e80d1f97ae55bcea1426f551e4419245b41b9c ac34df733d2dfe3b553897a1e9e1a44414f09834 < 51049f6e3f05d70660e2458ad3bb302a3721b751 ac34df733d2dfe3b553897a1e9e1a44414f09834 < 91a756d22f0482eac5bedb113c8922f90b254449 ac34df733d2dfe3b553897a1e9e1a44414f09834 < 27049f50be9f5ae3a62d272128ce0b381cb26a24 ac34df733d2dfe3b553897a1e9e1a44414f09834 < 31a3eba5c265a763260976674a22851e83128f6d ac34df733d2dfe3b553897a1e9e1a44414f09834 < 6f5c69f72e50d51be3a8c028ae7eda42c82902cb
Linux / Linux
5.14

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/d5e80d1f97ae55bcea1426f551e4419245b41b9c git.kernel.org: https://git.kernel.org/stable/c/51049f6e3f05d70660e2458ad3bb302a3721b751 git.kernel.org: https://git.kernel.org/stable/c/91a756d22f0482eac5bedb113c8922f90b254449 git.kernel.org: https://git.kernel.org/stable/c/27049f50be9f5ae3a62d272128ce0b381cb26a24 git.kernel.org: https://git.kernel.org/stable/c/31a3eba5c265a763260976674a22851e83128f6d git.kernel.org: https://git.kernel.org/stable/c/6f5c69f72e50d51be3a8c028ae7eda42c82902cb