CVE-2026-43137

Published: Mag 06, 2026 Last Modified: Mag 06, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

In the Linux kernel, the following vulnerability has been resolved:

ASoC: SOF: Intel: hda: Fix NULL pointer dereference

If there's a mismatch between the DAI links in the machine driver and
the topology, it is possible that the playback/capture widget is not
set, especially in the case of loopback capture for echo reference
where we use the dummy DAI link. Return the error when the widget is not
set to avoid a null pointer dereference like below when the topology is
broken.

RIP: 0010:hda_dai_get_ops.isra.0+0x14/0xa0 [snd_sof_intel_hda_common]

https://git.kernel.org/stable/c/10411f1f2c76be67103b1f95822ff629aa25e2aa
https://git.kernel.org/stable/c/16c589567a956d46a7c1363af3f64de3d420af20
https://git.kernel.org/stable/c/42068f7dd42b559c4eeae645e1455ff36518866a
https://git.kernel.org/stable/c/7750d78b4014902bc0ac03d4bb30faa076a913ab