CVE-2026-74292

Source
https://cve.org/CVERecord?id=CVE-2026-74292
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74292.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74292
Downstream
Published
2026-08-15T05:57:58Z
Modified
2026-08-18T03:56:28Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
ASoC: tegra: tegra210_ahub: Validate written enum value
Details

In the Linux kernel, the following vulnerability has been resolved:

ASoC: tegra: tegra210_ahub: Validate written enum value

tegra_ahub_put_value_enum() reads e->values[item[0]] before checking whether item[0] is within the enum item range. The existing check therefore happens too late to prevent an out-of-range read of the values array.

Move the check before the array access.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74292.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
16e1bcc2caf446fa3e1daa040b59fd6f6272a766
Fixed
4e45e4c2015519a39c40eb575c03b77807fb5080
Fixed
964f8f9015fb117402d8d2186593397cd93388e9
Fixed
2ec7d16fe21c68b0879873a2abf9aac854c96134
Fixed
4bcb23635d5059ee71f3fb89719ea14aada6fd59
Fixed
f67d63628fe158b3a6e6b33a2b8c83ff118699d1
Fixed
e098c9c6477dfa3cb363282100108484ceba5cc5
Fixed
226d93b65f4f99b35fb7a03bdb24acb577364ebc
Fixed
1d8aabb413b5638670dfd1162169edc0ba276a2e

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74292.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.9.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74292.json"