CVE-2025-40338 | Linux Kernel up to 6.17.7 ASoC dmaengine_pcm use after free (Nessus ID 296481)
A vulnerability was found in Linux Kernel up to 6.17.7. It has been declared as critical. This affects the function dmaengine_pcm of the component ASoC. Such manipulation leads to use after free.
This vulnerability is documented as CVE-2025-40338. The attack requires being on the local network. There is not any exploit available.
It is recommended to upgrade the affected component.