CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-80972

unknowncovered by 1 sourcefirst seen 2026-09-11
In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Check card index validity at probe aloop driver blindly trusts that the given devptr->id value is within the proper card index range at probe. It's OK for the devices the driver itself creates at the module probe time, but if the device is bound manually via sysfs interface, this could be -1 as "none", and this leads to OOB access for index[] and other parameters. Add a sanity check for the card index and warn/correct it if it's a value out of the range.

⚡ Watch CVE-2026-80972

Get an email if CVE-2026-80972 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-80972

CVE.org record

Embed the live status

CVE-2026-80972 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-80972 status](https://www.csirts.com/badge/CVE-2026-80972)](https://www.csirts.com/cve/CVE-2026-80972)