SB2026090550 - Integer underflow in Linux kernel soc sdca



SB2026090550 - Integer underflow in Linux kernel soc sdca

Published: September 5, 2026

Security Bulletin ID SB2026090550
CSH Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Local access
Highest impact Information disclosure

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 vulnerability.


1) Integer underflow (CVE-ID: CVE-2026-80900)

CWE-ID: CWE-191 - Integer underflow

CVSSv4: 0 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]


The vulnerability allows a local user to access memory outside the UMP buffer bounds.

The vulnerability exists due to an integer underflow in ASoC SDCA UMP message size checks when handling UMP messages whose offset is larger than the buffer length. A local user can provide a crafted UMP message with an oversized offset to access memory outside the UMP buffer bounds.


Remediation

Install update from vendor's website.