{"id":"CVE-2026-97418","published":"2026-09-24T17:17:19.613","lastModified":"2026-09-25T13:17:25.353","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: es18xx: check control allocation before private data setup\n\nsnd_es18xx_mixer() creates controls with snd_ctl_new1() and then stores\nbookkeeping pointers or sets private_free before calling snd_ctl_add().\nsnd_ctl_new1() can return NULL on allocation failure, so those writes\ncan dereference a NULL control pointer.\n\nCheck the returned control pointers before using them and return -ENOMEM\non allocation failure.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/422e42b7c2b882ba1d16d4afc8891bcea7c4de93","tags":[]},{"url":"https://git.kernel.org/stable/c/978079238f40f1a08ddb12ce208c484246f6a1b0","tags":[]},{"url":"https://git.kernel.org/stable/c/d88c24b76f285df9d206751e22c28e2613258cb3","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}