In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Validate payload length before processing block Move the payload length check in cs_dsp_load() and cs_dsp_coeff_load() to be done before the block is processed. The check that the length of a block payload does not exceed the number of remaining bytes in the firwmware file buffer was being done near the end of the loop iteration. However, some code before that check used the length field without validating it.
Use CWE-834, Linux vendor hub and Linux Kernel product page to widen CVE-2024-42237 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-7363, CVE-2026-7361 and CVE-2026-7359 for nearby disclosures in the same product family.