Answer in brief
CVE-2025-40097 records a Unknown severity vulnerability in ALSA: hda: Fix missing pointer check in hda_component_manager_init function. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=ae7abe36e352eddf8e30d3b1ea3fb402514ba13b <b044aa6ae63391ba40c93ca5d476d276cb17db1b || >=ae7abe36e352eddf8e30d3b1ea3fb402514ba13b <1c3f4b15eb1850558d7d4da74b98cffbb8121721 || >=ae7abe36e352eddf8e30d3b1ea3fb402514ba13b <218a8504e62fc2c8a1fd12523346b7a2b9bd2474 || >=ae7abe36e352eddf8e30d3b1ea3fb402514ba13b <47d1b9ca923b55c3f407788f1f15b04957e0e027 || >=ae7abe36e352eddf8e30d3b1ea3fb402514ba13b <1cf11d80db5df805b538c942269e05a65bcaf5bc | b044aa6ae63391ba40c93ca5d476d276cb17db1b, 1c3f4b15eb1850558d7d4da74b98cffbb8121721, 218a8504e62fc2c8a1fd12523346b7a2b9bd2474, 47d1b9ca923b55c3f407788f1f15b04957e0e027, 1cf11d80db5df805b538c942269e05a65bcaf5bc |
| Linux/Linuxgeneric | 5.17 | Not reported |
Published upstream
Oct 30, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Oct 3, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Oct 3, 2026
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix missing pointer check in hda_component_manager_init function The __component_match_add function may assign the 'matchptr' pointer the value ERR_PTR(-ENOMEM), which will subsequently be dereferenced. The call stack leading to the error looks like this: hda_component_manager_init |-> component_match_add |-> component_match_add_release |-> __component_match_add ( ... ,**matchptr, ... ) |-> *matchptr = ERR_PTR(-ENOMEM); // assign |-> component_master_add_with_match( ... match) |-> component_match_realloc(match, match->num); // dereference Add IS_ERR() check to prevent the crash. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Quoted source text, attributed separately from HOL analysis.