CVE-2026-31776 PUBLISHED

ALSA: ctxfi: Fix missing SPDIFI1 index handling

Assigner: Linux
Reserved: 09.03.2026 Published: 01.05.2026 Updated: 02.05.2026

In the Linux kernel, the following vulnerability has been resolved:

ALSA: ctxfi: Fix missing SPDIFI1 index handling

SPDIF1 DAIO type isn't properly handled in daio_device_index() for hw20k2, and it returned -EINVAL, which ended up with the out-of-bounds array access. Follow the hw20k1 pattern and return the proper index for this type, too.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from a2dbaeb5c61ef110ceefe0d48fe94d428d3bcf16 to 950decf59d4e978b60a792ce0b3e1555a608f489 (excl.)
  • affected from a2dbaeb5c61ef110ceefe0d48fe94d428d3bcf16 to b045ab3dff97edae6d538eeff900a34c098761f8 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.19 is affected
  • unaffected from 0 to 6.19 (excl.)
  • unaffected from 6.19.12 to 6.19.* (incl.)
  • unaffected from 7.0 to * (incl.)

References