{"id":"DEBIAN-CVE-2023-53788","details":"In the Linux kernel, the following vulnerability has been resolved:  ALSA: hda/ca0132: fixup buffer overrun at tuning_ctl_set()  tuning_ctl_set() might have buffer overrun at (X) if it didn't break from loop by matching (A).  \tstatic int tuning_ctl_set(...) \t{ \t\tfor (i = 0; i \u003c TUNING_CTLS_COUNT; i++) (A)\t\t\tif (nid == ca0132_tuning_ctls[i].nid) \t\t\t\tbreak;  \t\tsnd_hda_power_up(...); (X)\t\tdspio_set_param(..., ca0132_tuning_ctls[i].mid, ...); \t\tsnd_hda_power_down(...);                ^  \t\treturn 1; \t}  We will get below error by cppcheck  \tsound/pci/hda/patch_ca0132.c:4229:2: note: After for loop, i has value 12 \t for (i = 0; i \u003c TUNING_CTLS_COUNT; i++) \t ^ \tsound/pci/hda/patch_ca0132.c:4234:43: note: Array index out of bounds \t dspio_set_param(codec, ca0132_tuning_ctls[i].mid, 0x20, \t                                           ^ This patch cares non match case.","modified":"2026-09-15T08:47:38.648743662Z","published":"2025-12-09T01:16:50.190Z","upstream":["CVE-2023-53788"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53788"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.25-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53788.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.25-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53788.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.25-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53788.json"}}],"schema_version":"1.9.0"}