๐Ÿ” CVE Alert

CVE-2026-90781

MEDIUM 4.4

alsa-lib through 1.2.16.1 Off-by-One Stack Buffer Overflow in __snd_ctl_ascii_elem_id_parse()

CVSS Score
4.4
EPSS Score
0.0%
EPSS Percentile
0th

alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes one byte past a 64-byte buffer when parsing a name= field with 64 or more characters. Attackers can supply a long control-element identifier string through saved state files or command-line arguments to overwrite adjacent stack memory and crash the calling process.

CWE CWE-193
Vendor alsa project
Product alsa-lib
Published Sep 13, 2026
Stay Ahead of the Next One

Get instant alerts for alsa project alsa-lib

Be the first to know when new medium vulnerabilities affecting alsa project alsa-lib are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
Low
Availability
Low

Affected Versions

ALSA Project / alsa-lib
0 โ‰ค 1.2.16.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/alsa-project/alsa-lib/commit/f84cd4ced7b36fddb8e4ee24404cf7c091d27020 github.com: https://github.com/alsa-project/alsa-lib/blob/v1.2.16.1/src/control/ctlparse.c#L216-L241 lore.kernel.org: https://lore.kernel.org/alsa-devel/CACBQ=P2FhO3M6dkv3cWuKb6Qhs92ouV+FJ3SJZ_PVBSSdJWRAQ@mail.gmail.com/ github.com: https://github.com/alsa-project/alsa-lib vulncheck.com: https://www.vulncheck.com/advisories/alsa-lib-through-1.2.16.1-off-by-one-stack-buffer-overflow-in-snd-ctl-ascii-elem-id-parse

Credits

Harsh Raj Singhania