In the Linux kernel, the following vulnerability has been resolved:
ASoC: Intel: sof_sdw: Add space for a terminator into DAIs array
The code uses the initialised member of the asocsdwdailink struct to determine if a member of the array is in use. However in the case the array is completely full this will lead to an access 1 past the end of the array, expand the array by one entry to include a space for a terminator.
[
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"line_hashes": [
"154642671453337530570447073401371755584",
"242688825273135351773083290661388134733",
"144806161054262682049444638732938135299",
"238204309950525564120452039274224173224"
],
"threshold": 0.9
},
"target": {
"file": "sound/soc/intel/boards/sof_sdw.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@255cc582e6e16191a20d54bcdbca6c91d3e90c5e",
"signature_version": "v1",
"id": "CVE-2024-57880-2d6308a8"
},
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 2532.0,
"function_hash": "155274533916760461950197590223157315650"
},
"target": {
"file": "sound/soc/intel/boards/sof_sdw.c",
"function": "sof_card_dai_links_create"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b21a849764a4111b0bc14a5ffe987a0582419de2",
"signature_version": "v1",
"id": "CVE-2024-57880-9d3d0c87"
},
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 2532.0,
"function_hash": "155274533916760461950197590223157315650"
},
"target": {
"file": "sound/soc/intel/boards/sof_sdw.c",
"function": "sof_card_dai_links_create"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@255cc582e6e16191a20d54bcdbca6c91d3e90c5e",
"signature_version": "v1",
"id": "CVE-2024-57880-b8a470e2"
},
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"line_hashes": [
"154642671453337530570447073401371755584",
"242688825273135351773083290661388134733",
"144806161054262682049444638732938135299",
"238204309950525564120452039274224173224"
],
"threshold": 0.9
},
"target": {
"file": "sound/soc/intel/boards/sof_sdw.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b21a849764a4111b0bc14a5ffe987a0582419de2",
"signature_version": "v1",
"id": "CVE-2024-57880-f36fb5be"
}
]