CVE-2025-40154: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping
In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: bytcrrt5640: Fix invalid quirk input mapping
When an invalid value is passed via quirk option, currently bytcrrt5640 driver only shows an error message but leaves as is. This may lead to unepxected results like OOB access.
This patch corrects the input mapping to the certain default value if an invalid value is passed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40154?
CVE-2025-40154 is classified as a moderate severity vulnerability in the Linux kernel.
How do I fix CVE-2025-40154?
You can fix CVE-2025-40154 by updating to the latest version of the Linux kernel that includes the fix for this vulnerability.
What systems are affected by CVE-2025-40154?
CVE-2025-40154 affects systems utilizing the ASoC: Intel bytcr_rt5640 driver in the Linux kernel.
What type of vulnerability is CVE-2025-40154?
CVE-2025-40154 is an input validation vulnerability that can lead to unexpected behavior in the driver.
Has CVE-2025-40154 been exploited in the wild?
As of now, there have been no reported exploits of CVE-2025-40154 in the wild.