In the Linux kernel, the following vulnerability has been resolved:
ALSA: gus: check sndctlnew1() return value
sndctlnew1() can return NULL when memory allocation fails. sndgf1pcmvolumecontrol() does not check the return value before dereferencing kctl->id.index, which can lead to a NULL pointer dereference.
Add a NULL check after sndctlnew1() and return -ENOMEM if it fails.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64482.json"
}