Impact
The flaw is a use‑after‑free in the ALSA hda/cs35l41 driver. Firmware load work can be queued even before the device is fully initialized; if the device or its component is removed before the deferred work runs, the worker may execute after the driver has been torn down and dereference freed state. This results in a kernel crash, producing a denial‑of‑service rather than arbitrary code execution.
Affected Systems
All Linux kernel builds that contain the hda/cs35l41 driver are impacted. The vulnerability was fixed in the latest kernel releases; any kernel compiled with this driver before the patch remains susceptible. Users of older kernels should treat this as a risk until an update is applied.
Risk and Exploitability
The EPSS score is below 1 % and the CVE is not listed in CISA KEV, suggesting that exploitation is unlikely. Based on the description, it is inferred that a local attacker would need the ability to trigger firmware load via ALSA controls while the device is being removed, which imposes restrictive conditions. The CVSS score of 7.8 indicates a severe impact when those conditions are met. Overall risk can be considered low to moderate, but rapid patching is advised.
OpenCVE Enrichment
Debian DLA
Debian DSA