A vulnerability has been found in Linux Kernel up to 6.6.140/6.12.90/6.18.32/7.0.9 and classified as very critical. Affected is the function
rsnd_dai_of_node of the component ASoC. The manipulation of the argument component_dais leads to out-of-bounds read.
This vulnerability is traded as CVE-2026-63838. It is possible to initiate the attack remotely. There is no exploit available.