alsa-lib vulnerability

alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes one byte past a 64-byte buffer when parsing a name= field with 64 or more characters. Attackers can supply a long control-element identifier string through saved state files or command-line arguments to overwrite adjacent stack memory and crash the calling process.

Published 13 Sep 2026Updated 13 Sep 20265 sources
CVSS 4.8

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.