USB Audio Interface Vulnerability in Linux Kernel
CVE-2026-80828

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80828?

The Linux Kernel contains a vulnerability in the USB audio interface that may prevent proper system resume from sleep states after errors occur. When system resume fails, the audio card may become unusable until the device is rebooted, as certain cleanup actions are skipped. This issue, originating from the ALSA subsystem, involves improper handling when the 'snd_usb_pcm_resume()' or 'snd_usb_mixer_resume()' functions fail. Consequently, the control access can become blocked, leading to lingering power states that disrupt subsequent suspend and resume cycles. Mitigation steps are required to avoid these resource management issues, ensuring that user devices maintain operational integrity during system transitions.

Affected Version(s)

Linux 88a8516a2128a6d078a106ead48092240e8a138f < 3fa521c3c54b42e16cad8ade76551113a783752b

Linux 88a8516a2128a6d078a106ead48092240e8a138f < 3f06f3f5b16212f180764654a9398ff5f7a855c8

Linux 88a8516a2128a6d078a106ead48092240e8a138f

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.