USB Audio Interface Vulnerability in Linux Kernel
CVE-2026-80828
What is CVE-2026-80828?
The Linux Kernel contains a vulnerability in the USB audio interface that may prevent proper system resume from sleep states after errors occur. When system resume fails, the audio card may become unusable until the device is rebooted, as certain cleanup actions are skipped. This issue, originating from the ALSA subsystem, involves improper handling when the 'snd_usb_pcm_resume()' or 'snd_usb_mixer_resume()' functions fail. Consequently, the control access can become blocked, leading to lingering power states that disrupt subsequent suspend and resume cycles. Mitigation steps are required to avoid these resource management issues, ensuring that user devices maintain operational integrity during system transitions.
Affected Version(s)
Linux 88a8516a2128a6d078a106ead48092240e8a138f < 3fa521c3c54b42e16cad8ade76551113a783752b
Linux 88a8516a2128a6d078a106ead48092240e8a138f < 3f06f3f5b16212f180764654a9398ff5f7a855c8
Linux 88a8516a2128a6d078a106ead48092240e8a138f