cbcvebase.
CVE-2025-38105
published 2025-07-03

CVE-2025-38105: In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Kill timer properly at removal The USB-audio MIDI code initializes the…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.16%
5.7th percentile
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Kill timer properly at removal The USB-audio MIDI code initializes the timer, but in a rare case, the driver might be freed without the disconnect call. This leaves the timer in an active state while the assigned object is released via snd_usbmidi_free(), which ends up with a kernel warning when the debug configuration is enabled, as spotted by fuzzer. For avoiding the problem, put timer_shutdown_sync() at snd_usbmidi_free(), so that the timer can be killed properly. While we're at it, replace the existing timer_delete_sync() at the disconnect callback with timer_shutdown_sync(), too.

Affected

46 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.16.3-1 (forky)linux 6.16.3-1 (forky)
linuxlinux
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < 06513dd6d32c37d0364db8488cfdf3e14da238a806513dd6d32c37d0364db8488cfdf3e14da238a8
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < efaf61052b8ff9ee8968912fbaf02c2847c78edeefaf61052b8ff9ee8968912fbaf02c2847c78ede
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < 647410a7da46067953a53c0d03f8680eff570959647410a7da46067953a53c0d03f8680eff570959
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < c611b9e55174e439dcd85a72969b43a95f3827a4c611b9e55174e439dcd85a72969b43a95f3827a4
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < 62066758d2ae169278e5d6aea5995b1b6f6ddeb562066758d2ae169278e5d6aea5995b1b6f6ddeb5
linuxlinux>= c88469704d63787e8d44ca5ea1c1bd0adc29572d < 0718a78f6a9f04b88d0dc9616cc216b31c5f3cf10718a78f6a9f04b88d0dc9616cc216b31c5f3cf1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.16.3-16.16.3-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 2.6.14 < 6.6.1116.6.111
linuxlinux_kernel>= 6.13 < 6.15.36.15.3
linuxlinux_kernel>= 6.7 < 6.12.526.12.52
msrcazl3_kernel_6.6.104.2-4_on_azure_linux_3.0
msrcazl3_kernel_6.6.96.2-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.96.2-2_on_azure_linux_3.0
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.15
ubuntulinux-aws-fips
ubuntulinux-azure-5.15

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.8HIGH
vendor_msrc7.0HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.