CVE-2026-23318: ALSA: usb-audio: Use correct version for UAC3 header validation
Published Mar 25, 2026
·Updated
ALSA: usb-audio: Use correct version for UAC3 header validation
Affected Software
19 affected componentsFixes available
Linux Linux kernel (ALSA usb-audio)
Microsoft azl3 kernel 6.6.126.1-1
Linux Linux kernel>=4.19.84<4.20
Linux Linux kernel>=5.3.11<5.4
Linux Linux kernel>=5.4.1<5.10.253
Linux Linux kernel>=5.11<5.15.203
Linux Linux kernel>=5.16<6.1.167
Linux Linux kernel>=6.2<6.6.130
Linux Linux kernel>=6.7<6.12.77
Linux Linux kernel>=6.13<6.18.17
Linux Linux kernel>=6.19<6.19.7
Linux Linux kernel=5.4
Linux Linux kernel=7.0-rc1
Linux Linux kernel=7.0-rc2
Linux Linux kernel=7.0-rc3
Linux Linux kernel=7.0-rc4
Linux Linux kernel=7.0-rc5
Linux Linux kernel=7.0-rc6
Linux Linux kernel=7.0-rc7
Remediation
Event History
Mar 25, 2026
CVE Published
via MITRE·10:27 AM
Data Sourced
via MITRE·10:27 AM
Description
Data Sourced
via NVD·11:16 AM
RemedyDescriptionSeverityWeaknessAffected Software
Mar 26, 2026
Data Sourced
via Microsoft·08:03 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:03 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-23318?
CVE-2026-23318 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2026-23318?
To fix CVE-2026-23318, ensure that your system is updated to the latest version of the Linux kernel that addresses this vulnerability.
3
What software is affected by CVE-2026-23318?
CVE-2026-23318 affects the ALSA usb-audio subsystem in the Linux kernel.
4
What are the potential impacts of CVE-2026-23318?
The potential impacts of CVE-2026-23318 include privilege escalation and instability in audio functions.
5
Is there an exploit for CVE-2026-23318?
As of now, detailed information regarding active exploits for CVE-2026-23318 has not been widely reported.