{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-80910","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-08-26T14:34:25.801Z","datePublished":"2026-09-04T17:19:21.079Z","dateUpdated":"2026-09-04T17:19:21.079Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-09-04T17:19:21.079Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: codecs: lpass-wsa-macro: Fix enum kcontrol accesses\n\nEAR SPKR PA Gain\" and the four \"WSA RX* Mux\" controls are enumerated,\nbut their get and put callbacks access the value through\nucontrol->value.integer.value[0] (a long) instead of\nucontrol->value.enumerated.item[0] (an unsigned int).\n\nThis same pattern was fixed in the sibling drivers by\ncommit bcfe5f76cc40 (\"ASoC: codecs: rx-macro: fix accessing array\nout of bounds for enum type\") and\ncommit 0ea5eff7c606 (\"ASoC: codecs: va-macro: fix accessing array\nout of bounds for enum type\"), but wsa-macro was missed.\n\nOn 64-bit kernels with CONFIG_SND_CTL_DEBUG this trips the elem value\nsanity check and every read of these controls fails with -EINVAL."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["sound/soc/codecs/lpass-wsa-macro.c"],"versions":[{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"bd4e5f9c3b764dc0e2a5662f92d63d2f3767a78d","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"4bcac4bf304a3ec746192e49a669c236aaf27dbf","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"891129df5de79cd533ae335c6eab24df2ff2b0fd","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"524aa7b9954b0a43dd13f71ecbbac52a151c326d","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"2fe7a89b2b5b73be35c1e493d0246314ba54e427","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"7bcdde412e6c744f6135e02b12a735e2e37b639f","status":"affected","versionType":"git"},{"version":"809bcbcecebff86003e13f07444d21b9d6652a64","lessThan":"56f24311fd5607588a47e44675195a9efb200f29","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["sound/soc/codecs/lpass-wsa-macro.c"],"versions":[{"version":"5.11","status":"affected"},{"version":"0","lessThan":"5.11","status":"unaffected","versionType":"semver"},{"version":"5.15.217","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.184","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.153","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.105","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.46","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"7.1.10","lessThanOrEqual":"7.1.*","status":"unaffected","versionType":"semver"},{"version":"7.2","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"5.15.217"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.1.184"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.6.153"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.12.105"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.18.46"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"7.1.10"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"7.2"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/bd4e5f9c3b764dc0e2a5662f92d63d2f3767a78d"},{"url":"https://git.kernel.org/stable/c/4bcac4bf304a3ec746192e49a669c236aaf27dbf"},{"url":"https://git.kernel.org/stable/c/891129df5de79cd533ae335c6eab24df2ff2b0fd"},{"url":"https://git.kernel.org/stable/c/524aa7b9954b0a43dd13f71ecbbac52a151c326d"},{"url":"https://git.kernel.org/stable/c/2fe7a89b2b5b73be35c1e493d0246314ba54e427"},{"url":"https://git.kernel.org/stable/c/7bcdde412e6c744f6135e02b12a735e2e37b639f"},{"url":"https://git.kernel.org/stable/c/56f24311fd5607588a47e44675195a9efb200f29"}],"title":"ASoC: codecs: lpass-wsa-macro: Fix enum kcontrol accesses","x_generator":{"engine":"bippy-1.2.0"}}}}