CVE-2025-37979 | Linux Kernel up to 6.1.135/6.6.87/6.12.24/6.14.3/6.15-rc2 ASoC sc7280_snd_hw_params buffer overflow (Nessus ID 237504 / WID-SEC-2025-1114)
A vulnerability classified as critical was found in Linux Kernel up to 6.1.135/6.6.87/6.12.24/6.14.3/6.15-rc2. This issue affects the function sc7280_snd_hw_params of the component ASoC. Such manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2025-37979. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is advised.