SB20251112102 - Out-of-bounds read in Linux kernel intel boards
Published: November 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2025-40154)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the log_quirks() function in sound/soc/intel/boards/bytcr_rt5640.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/29a41bf6422688f0c5a09b18222e1a64b2629fa4
- https://git.kernel.org/stable/c/2c27e047bdcba457ec953f7e90e4ed6d5f8aeb01
- https://git.kernel.org/stable/c/48880f3cdf2b6d8dcd91219c5b5c8a7526411322
- https://git.kernel.org/stable/c/5c03ea2ef4ebba75c69c90929d8590eb3d3797a9
- https://git.kernel.org/stable/c/a97b4d18ecb012c5624cdf2cab2ce5e1312fdd5d
- https://git.kernel.org/stable/c/dea9c8c9028c9374761224a7f9d824e845a2aa2e
- https://git.kernel.org/stable/c/f58fca15f3bf8b982e799c31e4afa8923788aa40
- https://git.kernel.org/stable/c/fba404e4b4af4f4f747bb0e41e9fff7d03c7bcc0