CVE-2025-39696
published 2025-09-05CVE-2025-39696: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv During the conversion to unify…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.13%
2.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
During the conversion to unify the calibration data management, the
reference to tasdevice_priv was wrongly set to h->hda_priv instead of
h->priv. This resulted in memory corruption and crashes eventually.
Unfortunately it's a void pointer, hence the compiler couldn't know
that it's wrong.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.16.5-1 (forky) | linux 6.16.5-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 4fe238513407d83f38bf5782e8bcdd7b8baeb85d < 2812815aa79637d39d4398ecd7e58f65d1c79231 | 2812815aa79637d39d4398ecd7e58f65d1c79231 |
| linux | linux | >= 4fe238513407d83f38bf5782e8bcdd7b8baeb85d < 3f4422e7c9436abf81a00270be7e4d6d3760ec0e | 3f4422e7c9436abf81a00270be7e4d6d3760ec0e |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.16.5-1 | 6.16.5-1 |
| linux | linux_kernel | >= 6.16 < 6.16.4 | 6.16.4 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
vendor_redhat·2025-09-05·CVSS 5.5
CVE-2025-39696 [MEDIUM] kernel: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
kernel: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
During the conversion to unify the calibration data management, the
reference to tasdevice_priv was wrongly set to h->hda_priv instead of
h->priv. This resulted in memory corruption and crashes eventually.
Unfortunately it's a void pointer, hence the compiler couldn't know
that it's wrong.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Packag
Debian
CVE-2025-39696: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: ...
vendor_debian·2025·CVSS 5.5
CVE-2025-39696 [MEDIUM] CVE-2025-39696: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: ...
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv During the conversion to unify the calibration data management, the reference to tasdevice_priv was wrongly set to h->hda_priv instead of h->priv. This resulted in memory corruption and crashes eventually. Unfortunately it's a void pointer, hence the compiler couldn't know that it's wrong.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.16.5-1)
sid: resolved (fixed in 6.16.5-1)
trixie: resolved
GHSA
GHSA-2cq2-6rr9-jjr9: In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
During the conversion
ghsa_unreviewed·2025-09-05
CVE-2025-39696 [MEDIUM] GHSA-2cq2-6rr9-jjr9: In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
During the conversion
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv
During the conversion to unify the calibration data management, the
reference to tasdevice_priv was wrongly set to h->hda_priv instead of
h->priv. This resulted in memory corruption and crashes eventually.
Unfortunately it's a void pointer, hence the compiler couldn't know
that it's wrong.
OSV
CVE-2025-39696: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv During the conversion to
osv·2025-09-05·CVSS 5.5
CVE-2025-39696 [MEDIUM] CVE-2025-39696: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv During the conversion to
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: tas2781: Fix wrong reference of tasdevice_priv During the conversion to unify the calibration data management, the reference to tasdevice_priv was wrongly set to h->hda_priv instead of h->priv. This resulted in memory corruption and crashes eventually. Unfortunately it's a void pointer, hence the compiler couldn't know that it's wrong.
Suricata
ET WEB_SPECIFIC_APPS Brickcom configfile.dump action Parameter Information Disclosure Attempt (CVE-2017-9238)
suricata·2025-10-16
CVE-2017-9238 ET WEB_SPECIFIC_APPS Brickcom configfile.dump action Parameter Information Disclosure Attempt (CVE-2017-9238)
ET WEB_SPECIFIC_APPS Brickcom configfile.dump action Parameter Information Disclosure Attempt (CVE-2017-9238)
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Brickcom configfile.dump action Parameter Information Disclosure Attempt (CVE-2017-9238)"; flow:established,to_server; http.method; content:"GET"; http.uri; content:"/configfile.dump"; startswith; fast_pattern; pcre:"/^(?:\x3faction\x3dget|\x2egz|\x2ebackup)?$/R"; reference:url,www.exploit-db.com/exploits/39696; reference:cve,2017-9238; classtype:attempted-admin; sid:2065228; rev:1; metadata:affected_product Brickcom, attack_target Networking_Equipment, tls_state plaintext, created_at 2025_10_16, cve CVE_2017_9238, deployment Perimeter, deployment Internal, performance_impact Low, confidence High, signature_sever
No public exploits indexed.
2025-09-05
Published