CVE-2026-46184

Source
https://cve.org/CVERecord?id=CVE-2026-46184
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46184.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-46184
Downstream
Related
Published
2026-05-28T09:36:38.134Z
Modified
2026-06-12T03:56:53.445211464Z
Summary
sound: ua101: fix division by zero at probe
Details

In the Linux kernel, the following vulnerability has been resolved:

sound: ua101: fix division by zero at probe

Add a missing sanity check for bNrChannels in detectusbformat() to prevent a division by zero in playbackurbcomplete() and captureurbcomplete().

USB core does not validate class-specific descriptor fields such as bNrChannels, so drivers must verify them before use. If a device provides bNrChannels = 0, frame_bytes becomes zero and is later used as a divisor in the URB completion handlers, leading to a kernel crash.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/46xxx/CVE-2026-46184.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
63978ab3e3e963db28093b53bb4598f2702e1ad7
Fixed
e02897c5b041c9b980055fa9a6167023d6dc5caf
Fixed
aae1498c59f48d03ee358df84f07a5af9885f827
Fixed
66d9c2ed081f299cfb201d9e9c4faf920e56e0bf
Fixed
6162e8212e88c39492d981b248b5e37002486c66
Fixed
593dd7e6c890d8e4ca21b3e2f796b7cb8e8da983
Fixed
0ff2b713f406e9ecadb406014d74e7a020ac12b1
Fixed
f1862dbf09080254c52175a448290c784dd7d3de
Fixed
d1f73f169c1014463b5060e3f60813e13ddc7b87

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46184.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.34
Fixed
5.10.258
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.209
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.175
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.140
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.88
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.30
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46184.json"