VDB
CVE-2026-31776
CVE-2026-31776
PUBLISHED
In the Linux kernel, the following vulnerability has been resolved: ALSA: ctxfi: Fix missing SPDIFI1 index handling SPDIF1 DAIO type isn't properly handled in daio_device_index() for hw20k2, and it returned -EINVAL, which ended up with the out-of-bounds array access. Follow the hw20k1 pattern and return the proper index for this type, too.
EPSS 0.02% · 4.2th percentile
Risk Scores
EPSS Score
0.02%
4.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| linux | linux_kernel | 0, 0, 0 |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 |
Timeline
- May 1, 2026 CVE Published
- May 11, 2026 CVE Updated
- May 18, 2026 EPSS Score
- May 19, 2026 EPSS Score
- May 20, 2026 EPSS Score
- May 21, 2026 EPSS Score
- May 22, 2026 EPSS Score
- May 23, 2026 EPSS Score
- May 24, 2026 EPSS Score
- May 25, 2026 EPSS Score
- May 26, 2026 EPSS Score
- May 27, 2026 EPSS Score
References
- https://git.kernel.org/stable/c/a3b0e5f84058a9c3d0542a71c2b3a7801e4ee26a url
- https://git.kernel.org/stable/c/28222e13666b5d26bf66563c056069ed32f87b33 url
- https://git.kernel.org/stable/c/5b39985303a639b159dea306a032c08ef22f029d url
- https://git.kernel.org/stable/c/c8859675f1cf92fe2eb25ef525440702140a0b55 url
- https://git.kernel.org/stable/c/a0b45bdfffce9894b39392d061c14fda24de8b67 url
- https://git.kernel.org/stable/c/57698f184e1afbe054b3cd30e2c43a67c11d7f5e url
- https://git.kernel.org/stable/c/950decf59d4e978b60a792ce0b3e1555a608f489 url
- https://git.kernel.org/stable/c/b045ab3dff97edae6d538eeff900a34c098761f8 url
- https://lists.debian.org/debian-lts-announce/2026/05/msg00004.html advisory
- https://lists.debian.org/debian-lts-announce/2026/05/msg00005.html advisory
- https://lists.debian.org/debian-security-announce/2026/msg00154.html advisory
- https://lists.debian.org/debian-security-announce/2026/msg00148.html advisory