SB20251112105 - Out-of-bounds read in Linux kernel intel boards
Published: November 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2025-40121)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the MODULE_PARM_DESC() function in sound/soc/intel/boards/bytcr_rt5651.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/2204e582b4eea872e1e7a5c90edcb84b928c68b0
- https://git.kernel.org/stable/c/4336efb59ef364e691ef829a73d9dbd4d5ed7c7b
- https://git.kernel.org/stable/c/64a36a7032082b4c330ce081acb6efb99246020e
- https://git.kernel.org/stable/c/95e29db33b5f73218ae08ebb48c61c9a8d28e2ff
- https://git.kernel.org/stable/c/bff827b0d507e52b23efab9f67c232a4f037ab2c
- https://git.kernel.org/stable/c/c60f269c123210a6846d6d1367de0eaa402c10b0
- https://git.kernel.org/stable/c/f197894de2f4ef46c7d53827d9df294b75c35e13
- https://git.kernel.org/stable/c/fdf99978a6480e14405212472b6c747e0fa43bed