CVE-2025-37891 | Linux Kernel up to 6.6.89/6.12.27/6.14.5/6.15-rc4 ALSA do_convert_to_ump buffer overflow (EUVD-2025-15684 / Nessus ID 242283)
A vulnerability was found in Linux Kernel up to 6.6.89/6.12.27/6.14.5/6.15-rc4. It has been declared as critical. Affected by this vulnerability is the function do_convert_to_ump of the component ALSA. Such manipulation leads to buffer overflow.
This vulnerability is listed as CVE-2025-37891. The attack must be carried out from within the local network. There is no available exploit.
It is recommended to upgrade the affected component.