cbcvebase.
CVE-2025-40085
published 2025-10-29

CVE-2025-40085: In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix NULL pointer deference in try_to_register_card In…

PriorityP421high7.8
EPSS
0.19%
9.1th percentile
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix NULL pointer deference in try_to_register_card In try_to_register_card(), the return value of usb_ifnum_to_if() is passed directly to usb_interface_claimed() without a NULL check, which will lead to a NULL pointer dereference when creating an invalid USB audio device. Fix this by adding a check to ensure the interface pointer is valid before passing it to usb_interface_claimed().

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 28787ff9fbeaf57684eb64cc33e2ec8ceedf21b5 < 736159f7b296d7a95f7208eb4799639b1f8b16a0736159f7b296d7a95f7208eb4799639b1f8b16a0
linuxlinux>= 39efc9c8a973ddff5918191525d1679d0fb368ea < 8d19a7ab28c7b9c207db5c5282afa8cc8595bcdb8d19a7ab28c7b9c207db5c5282afa8cc8595bcdb
linuxlinux>= 39efc9c8a973ddff5918191525d1679d0fb368ea < 576312eb436326b44b7010f4d9ae2b698df075ea576312eb436326b44b7010f4d9ae2b698df075ea
linuxlinux>= 39efc9c8a973ddff5918191525d1679d0fb368ea < bba7208765d26e5e36b87f21dacc2780b064f41fbba7208765d26e5e36b87f21dacc2780b064f41f
linuxlinux>= 39efc9c8a973ddff5918191525d1679d0fb368ea < 8503ac1a62075a085402e42a386b5c627c821a518503ac1a62075a085402e42a386b5c627c821a51
linuxlinux>= 39efc9c8a973ddff5918191525d1679d0fb368ea < 28412b489b088fb88dff488305fd4e56bd47f6e428412b489b088fb88dff488305fd4e56bd47f6e4
linuxlinux>= 5.15.75 < 5.15.1965.15.196
linuxlinux>= 5.19.17 < 5.205.20
linuxlinux>= 6.0.3 < 6.16.1
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 5.15.1965.15.196
linuxlinux_kernel>= 0 < 5.15.0-170.1805.15.0-170.180
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 5.16.0 < 6.1.1586.1.158
linuxlinux_kernel>= 6.1.0 < 6.6.1146.6.114
linuxlinux_kernel>= 6.2.0 < 6.12.556.12.55
linuxlinux_kernel>= 6.7.0 < 6.17.56.17.5

CVSS provenance

osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_msrc5.8MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.