ThreatCluster

Intel ASoC and cpufreq Null Pointer Dereference Fixes Announced

First seen 18 Feb 2026, 09:15 UTC Api.Msrc.Microsoft 41

Article Content

Browse articles
ThreatCluster

Microsoft has published information regarding two vulnerabilities affecting Intel components. CVE-2025-37793 pertains to a null pointer dereference in the ASoC avs_component_probe function, while CVE-2025-37830 addresses a similar issue in the cpufreq scmi_cpufreq_get_rate function. Both vulnerabilities could potentially impact system stability and performance.

Timeline

2025-05-01
CVE-2025-37793 published
2025-05-08
CVE-2025-37830 published
2026-02-18
Information published about both vulnerabilities