CVE-2025-68347

In the Linux kernel, the following vulnerability has been resolved: ALSA: firewire-motu: fix buffer overflow in hwdep read for DSP events The DSP event handling code in hwdep_read() could write more bytes to the user buffer than requested, when a user provides a buffer smaller than the event header size (8 bytes). Fix by using min_t() to clamp the copy size, This ensures we never copy more than the user requested.
Configurations

No configuration.

History

30 Jul 2026, 06:24

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

11 Jan 2026, 17:15

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/16620f0617400746984362c3d6ac547eeae1d35f -
  • () https://git.kernel.org/stable/c/ddd32ec66bc4eb6969fe835e4cc1c0706c6348fe -

24 Dec 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-24 11:15

Updated : 2026-07-30 06:24


NVD link : CVE-2025-68347

Mitre link : CVE-2025-68347

CVE.ORG link : CVE-2025-68347


JSON object : View

Products Affected

No product.

CWE

No CWE.