CVE Database
/

CVE-2025-38629

Back to search

CVE-2025-38629

Published: Aug 22, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb: scarlett2: Fix missing NULL check scarlett2_input_select_ctl_info() sets up the string arrays allocated via kasprintf(), but it misses NULL checks, which may lead to NULL dereference Oops. Let's add the proper NULL check.

VendorProductVersions

Linux

Linux

affected
8eba063b5b2b498ddd01ea6f29fc9b12368c3d53 - < d558db85920b124bac36f8a7ddc5de0aa7491bdd
affected
8eba063b5b2b498ddd01ea6f29fc9b12368c3d53 - < 2c735fcaee81ad8056960659dc9dc460891e76b0
affected
8eba063b5b2b498ddd01ea6f29fc9b12368c3d53 - < df485a4b2b3ee5b35c80f990beb554e38a8a5fb1

Linux

Linux

affected
6.13
unaffected
0 - < 6.13
unaffected
6.15.10 - <= 6.15.*
unaffected
6.16.1 - <= 6.16.*
unaffected
6.17 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now