VYPR

rpm package

opensuse/alsa&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/alsa&distro=openSUSE%20Tumbleweed

Vulnerabilities (2)

  • CVE-2026-90781MedSep 13, 2026
    affected < 1.2.16.1-2.1fixed 1.2.16.1-2.1

    alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes one byte past a 64-byte buffer when parsing a name= field with 64 or more characters. Attackers can supply a long control-element identifier string through saved

  • CVE-2009-0035MedNov 9, 2019
    affected < 1.1.2-2.1fixed 1.1.2-2.1

    alsa-utils 1.0.19 and later versions allows local users to overwrite arbitrary files via a symlink attack via the /usr/bin/alsa-info and /usr/bin/alsa-info.sh scripts.