In the Linux kernel, the following vulnerability has been resolved: ALSA: jack: Access input_dev under mutex It is possible when using ASoC that input_dev is unregistered while calling snd_jack_report, which causes NULL pointer dereference. In order to prevent this serialize access to input_dev using mutex lock.
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025022614-CVE-2022-49538-c7b9@gregkh/T