A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.9-rc1. Affected is the function
del_timer
of the component ALSA. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2024-26654. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.