Loading HuntDB...

GHSA-h8jm-3c82-6vvq

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A use after free vulnerability exists in the ALSA PCM package in the Linux Kernel. SNDRV_CTL_IOCTL_ELEM_{READ|WRITE}32 is missing locks that can be used in a use-after-free that can result in a priviledge escalation to gain ring0 access from the system user. We recommend upgrading past commit 56b88b50565cd8b946a2d00b0c83927b7ebb055e

Related CVEs

Key Information

GHSA ID
GHSA-h8jm-3c82-6vvq
Published
January 30, 2023 3:30 PM
Last Modified
February 7, 2023 12:30 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 14, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.