Vulnerability Bulletins

CVE-2026-43204

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

ASoC: qcom: q6asm: drop DSP responses for closed data streams

'Commit a354f030dbce ("ASoC: qcom: q6asm: handle the responses
after closing")' attempted to ignore DSP responses arriving
after a stream had been closed.

However, those responses were still handled, causing lockups.

Fix this by unconditionally dropping all DSP responses associated with
closed data streams.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-43204