CVE-2022-49005: In the Linux kernel, the following vulnerability has been resolved: ASoC: ops: Fix bounds check for _sx controls For _
Summary
A bug in the Linux kernel's audio sound system (ASoC) incorrectly checked the maximum value for _sx controls (special volume controls where the max field means the number of steps, not the maximum value itself). The bounds check in snd_soc_put_volsw_sx() (a function that validates input values) needed to be fixed to properly check against the actual maximum value instead.
Solution / Mitigation
Multiple patches were released to fix this issue. The patches are available at the following kernel.org URLs: 325d94d16e3131b54bdf07356e4cd855e0d853fc, 46bab25cc0230df60d1c02b651cc5640a14b08df, 4a95a49f26308782b4056401989ecd7768fda8fa, 698813ba8c580efb356ace8dbf55f61dac6063a8, 73dce3c1d48c4662bdf3ccbde1492c2cb4bfd8ce, 98b15c706644bebc19d2e77ccc360cc51444f6d0, b50c9641897274c3faef5f95ac852f54b94be2e8, and e46adadf19248d59af3aa6bc52e09115bf479bf7.
Vulnerability Details
5.5(medium)
EPSS: 0.0%
Classification
Original source: https://nvd.nist.gov/vuln/detail/CVE-2022-49005
First tracked: February 15, 2026 at 08:35 PM
Classified by LLM (prompt v3) · confidence: 95%