A vulnerability was found in ZephyrProject Zephyr up to 4.4.x and classified as problematic. Impacted is the function dai_alh_get_properties of the file drivers/dai/intel/alh/alh.c of the component Intel ALH Digital-Audio-Interface Driver. Such manipulation of the argument stream_id leads to out-of-bounds read.

This vulnerability is referenced as CVE-2026-12232. The attack can only be performed from a local environment. No exploit is available.

It is suggested to upgrade the affected component.