Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56109

Опубликовано: 22 июн. 2026
Источник: redhat
CVSS3: 6.8
EPSS Низкий

Описание

The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 contains a double-free vulnerability in parse_def() in src/conf.c that allows attackers to corrupt memory by supplying maliciously crafted ALSA configuration text. When parsing nested compound or array configuration blocks, parse_def() fails to check return values before continuing, causing snd_config_delete() to be called twice on the same already-freed node, resulting in a NULL-pointer write or invalid memory read.

A flaw was found in the ALSA (Advanced Linux Sound Architecture) library. This double-free vulnerability, located in the parse_def() function, allows a local attacker to corrupt memory by providing specially crafted ALSA configuration text. When processing nested configuration blocks, the library attempts to free an already freed memory node. This can lead to system instability, crashes, or a denial of service (DoS).

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10alsa-libFix deferred
Red Hat Enterprise Linux 6alsa-libOut of support scope
Red Hat Enterprise Linux 7alsa-libFix deferred
Red Hat Enterprise Linux 8alsa-libFix deferred
Red Hat Enterprise Linux 9alsa-libFix deferred
Red Hat Hardened Imagesalsa-lib-main-1.2.16.1-2.hum1FixedRHSA-2026:4057316.07.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2491439alsa-lib: ALSA library: Double-free vulnerability leading to memory corruption

EPSS

Процентиль: 4%
0.00138
Низкий

6.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.8
ubuntu
3 месяца назад

The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 contains a double-free vulnerability in parse_def() in src/conf.c that allows attackers to corrupt memory by supplying maliciously crafted ALSA configuration text. When parsing nested compound or array configuration blocks, parse_def() fails to check return values before continuing, causing snd_config_delete() to be called twice on the same already-freed node, resulting in a NULL-pointer write or invalid memory read.

CVSS3: 6.8
nvd
3 месяца назад

The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 contains a double-free vulnerability in parse_def() in src/conf.c that allows attackers to corrupt memory by supplying maliciously crafted ALSA configuration text. When parsing nested compound or array configuration blocks, parse_def() fails to check return values before continuing, causing snd_config_delete() to be called twice on the same already-freed node, resulting in a NULL-pointer write or invalid memory read.

CVSS3: 6.8
debian
3 месяца назад

The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 c ...

suse-cvrf
3 месяца назад

Security update for alsa

suse-cvrf
около 2 месяцев назад

Security update for alsa

EPSS

Процентиль: 4%
0.00138
Низкий

6.8 Medium

CVSS3