CVE-2025-68347: ALSA: firewire-motu: fix buffer overflow in hwdep read for DSP events
Published Dec 24, 2025
·Updated
ALSA: firewire-motu: fix buffer overflow in hwdep read for DSP events
Affected Software
3 affected componentsFixes available
Event History
Dec 24, 2025
CVE Published
via MITRE·10:32 AM
Data Sourced
via MITRE·10:32 AM
DescriptionSeverity
Data Sourced
via Red Hat·11:03 AM
DescriptionSeverityAffected Software
Data Sourced
via NVD·11:15 AM
DescriptionSeverity
Dec 25, 2025
Data Sourced
via Microsoft·01:04 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·09:04 AM
DescriptionSeverity
Updated
via Microsoft·09:04 AM
Affected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-68347?
The severity of CVE-2025-68347 is classified as medium due to the potential for a buffer overflow leading to data corruption or unintended behavior.
2
How do I fix CVE-2025-68347?
To fix CVE-2025-68347, update the Linux kernel to a version that includes the patch for this vulnerability.
3
What systems are affected by CVE-2025-68347?
CVE-2025-68347 affects versions of the Linux kernel that handle ALSA firewire-motu functionalities.
4
What are the potential impacts of CVE-2025-68347?
The potential impacts of CVE-2025-68347 include system crashes, data corruption, and exploitation opportunities for attackers.
5
When was CVE-2025-68347 disclosed?
CVE-2025-68347 was disclosed in early 2025, following the identification of the buffer overflow issue in the Linux kernel.