soundwire: fix enumeration completion
Summary
| CVE | CVE-2023-54096 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2025-12-24 13:16:11 UTC |
| Updated | 2026-08-04 10:19:29 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: soundwire: fix enumeration completion The soundwire subsystem uses two completion structures that allow drivers to wait for soundwire device to become enumerated on the bus and initialised by their drivers, respectively. The code implementing the signalling is currently broken as it does not signal all current and future waiters and also uses the wrong reinitialisation function, which can potentially lead to memory corruption if there are still waiters on the queue. Not signalling future waiters specifically breaks sound card probe deferrals as codec drivers can not tell that the soundwire device is already attached when being reprobed. Some codec runtime PM implementations suffer from similar problems as waiting for enumeration during resume can also timeout despite the device already having been enumerated. |
Risk And Classification
Primary CVSS: v3.1 7.8 HIGH from 416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.001430000 probability, percentile 0.041010000 (date 2026-08-06)
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | Secondary | 7.8 | HIGH | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| 3.1 | CNA | DECLARED | 7.8 | HIGH | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected fb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 48d1d0ce0782f995fda678508fdae35c5e9593f0 git | Not specified |
| CNA | Linux | Linux | affected fb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 a36b522767f3a72688893a472e80c9aa03e67eda git | Not specified |
| CNA | Linux | Linux | affected fb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 e1d54962a63b6ec04ed0204a3ecca942fde3a6fe git | Not specified |
| CNA | Linux | Linux | affected fb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 c5265691cd065464d795de5666dcfb89c26b9bc1 git | Not specified |
| CNA | Linux | Linux | affected fb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 c40d6b3249b11d60e09d81530588f56233d9aa44 git | Not specified |
| CNA | Linux | Linux | affected 5.7 | Not specified |
| CNA | Linux | Linux | unaffected 5.7 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.190 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.126 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.43 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.4.8 6.4.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.5 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/a36b522767f3a72688893a472e80c9aa03e67eda | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/e1d54962a63b6ec04ed0204a3ecca942fde3a6fe | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/c40d6b3249b11d60e09d81530588f56233d9aa44 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/48d1d0ce0782f995fda678508fdae35c5e9593f0 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/c5265691cd065464d795de5666dcfb89c26b9bc1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.