SB2026090550 - Integer underflow in Linux kernel soc sdca
Published: September 5, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Integer underflow (CVE-ID: CVE-2026-80900)
CWE-ID: CWE-191 - Integer underflow
CVSSv4: 0 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
The vulnerability allows a local user to access memory outside the UMP buffer bounds.
The vulnerability exists due to an integer underflow in ASoC SDCA UMP message size checks when handling UMP messages whose offset is larger than the buffer length. A local user can provide a crafted UMP message with an oversized offset to access memory outside the UMP buffer bounds.
Remediation
Install update from vendor's website.