CVE-2026-96674
Last modified
CVE-2026-96674 is a medium-severity vulnerability rated 4.4/10 on the CVSS scale. alsa-lib through 1.2.16.1 computes combined topology element size using 32-bit arithmetic in src/topology/ctl.c, allowing integer overflow that defeats bounds checks. Attackers can supply crafted topology files that wrap size calculations, causing the decoder to read beyond the topology buffer and potentially leak sensitive data or crash the application..
Description
alsa-lib through 1.2.16.1 computes combined topology element size using 32-bit arithmetic in src/topology/ctl.c, allowing integer overflow that defeats bounds checks. Attackers can supply crafted topology files that wrap size calculations, causing the decoder to read beyond the topology buffer and potentially leak sensitive data or crash the application.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| ALSA Project | alsa-lib | <= 1.2.16.1 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-96674?
How severe is CVE-2026-96674?
How do I fix CVE-2026-96674?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-96609Robur Albatross 1.0.0 through 2.x before 2.7.2 does not limi…7.1
- CVE-2026-96611FFmpeg before 9.0 has a signed integer overflow in libavform…6.9
- CVE-2026-9662The Recover Exit For WooCommerce plugin for WordPress is vul…8.1
- CVE-2026-9667IBM WebSphere Application Server 9.0, and 8.5 is vulnerable …5.3
- CVE-2026-96672Frappe ERPNext versions before 16.34.1 fail to validate that…6.4
- CVE-2026-96673Photoview through 2.4.0 contains an SQL injection vulnerabil…7.5
- CVE-2026-96675alsa-lib through 1.2.16.1 contains a denial of service vulne…3.3
- CVE-2026-9668With legitimate user credentials in hand, attackers can cons…6.3
- CVE-2026-9669bz2.BZ2Decompressor objects could be reused after a decompre…8.2
- CVE-2026-9673Versions of the package json-2-csv from 3.15.0 and before 5.…6.8
- CVE-2026-9674A cross-site request forgery (CSRF) vulnerability in Jenkins…4.3
- CVE-2026-9675Impact: The undici WebSocket client enforces maxPayloadSize …7.5
Are you affected by CVE-2026-96674?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
