CVE-2026-90781 | ALSA Project alsa-lib up to 1.2.16.1 Control Element Identifier Parsing __snd_ctl_ascii_elem_id_parse Name stack-based overflow

SecurityVulns

A vulnerability, which was classified as problematic, was found in ALSA Project alsa-lib up to 1.2.16.1. This issue affects the function __snd_ctl_ascii_elem_id_parse of the component Control Element Identifier Parsing. Such manipulation of the argument Name leads to stack-based buffer overflow.

This vulnerability is documented as CVE-2026-90781. The attack needs to be performed locally. There is not any exploit available.

It is best practice to apply a patch to resolve this issue.VulDB Recent EntriesRead More