Upstream information

CVE-2025-40132 at MITRE

Description

In the Linux kernel, the following vulnerability has been resolved:

ASoC: Intel: sof_sdw: Prevent jump to NULL add_sidecar callback

In create_sdw_dailink() check that sof_end->codec_info->add_sidecar
is not NULL before calling it.

The original code assumed that if include_sidecar is true, the codec
on that link has an add_sidecar callback. But there could be other
codecs on the same link that do not have an add_sidecar callback.

SUSE information

Overall state of this security issue: Does not affect SUSE products

SUSE Bugzilla entry: 1253330 [NEW]

No SUSE Security Announcements cross referenced.


SUSE Timeline for this CVE

CVE page created: Wed Nov 12 18:29:51 2025
CVE page last modified: Wed Nov 12 18:29:51 2025