CVE-2025-40098 | Linux Kernel up to 6.17.4/6.18-rc1 ALSA cs35l41_get_acpi_mute_state Return null pointer dereference

SecurityVulns

A vulnerability was found in Linux Kernel up to 6.17.4/6.18-rc1. It has been classified as critical. This impacts the function cs35l41_get_acpi_mute_state of the component ALSA. This manipulation of the argument Return causes null pointer dereference.

The identification of this vulnerability is CVE-2025-40098. The attack needs to be done within the local network. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More