In the Linux kernel, the following vulnerability has been resolved:
ALSA: compress: Fix task creation error unwind
snd_compr_task_new() allocates the driver task before validating the
returned DMA buffers and reserving file descriptors. When either of
those later steps fails, the core frees its task wrapper and DMA-buffer
references without calling the driver's task_free() callback. Any
driver resources allocated by task_create() are therefore leaked.
The dual-fd allocation path also jumps to cleanup without storing the
negative get_unused_fd_flags() result in retval. Since retval still
contains the successful task_create() return value, TASK_CREATE can
incorrectly report success although the task was discarded.
Preserve the fd allocation errors and call task_free() when failure
occurs after a successful task_create() callback.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-25 10:17
Updated : 2026-08-17 05:17
NVD link : CVE-2026-64485
Mitre link : CVE-2026-64485
CVE.ORG link : CVE-2026-64485
JSON object : View
Products Affected
No product.
CWE
No CWE.
