CVE-2026-43436

Source
https://cve.org/CVERecord?id=CVE-2026-43436
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43436.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-43436
Downstream
Related
Published
2026-05-08T14:22:06.632Z
Modified
2026-07-22T18:22:42.309222177Z
Summary
ALSA: usb-audio: Check endpoint numbers at parsing Scarlett2 mixer interfaces
Details

In the Linux kernel, the following vulnerability has been resolved:

ALSA: usb-audio: Check endpoint numbers at parsing Scarlett2 mixer interfaces

The Scarlett2 mixer quirk in USB-audio driver may hit a NULL dereference when a malformed USB descriptor is passed, since it assumes the presence of an endpoint in the parsed interface in scarlett2findfc_interface(), as reported by fuzzer.

For avoiding the NULL dereference, just add the sanity check of bNumEndpoints and skip the invalid interface.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/43xxx/CVE-2026-43436.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6c0a2078134aba6a77291554035304df9e16b85c
Fixed
b014cc945baba75816cda0cf8934be87c9ed4947
Fixed
c5c5a6c53cf3b658f1d4512dfa61f3cd25bc34ba
Fixed
b267255c15d2a5b90c4e926146aa155e5161e264
Fixed
3d542cf3c4c854cdf5d58049771f68926b9eb2b9
Fixed
3d4f23885e4b90347c9a1d779af6e79a99b5172a
Fixed
df1d8abf36ca3681c21a6809eaa9a1e01ef897a6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43436.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.14.0
Fixed
6.1.167
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.130
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.78
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.19
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43436.json"