-

CVE-2025-40207

In the Linux kernel, the following vulnerability has been resolved:

media: v4l2-subdev: Fix alloc failure check in v4l2_subdev_call_state_try()

v4l2_subdev_call_state_try() macro allocates a subdev state with
__v4l2_subdev_state_alloc(), but does not check the returned value. If
__v4l2_subdev_state_alloc fails, it returns an ERR_PTR, and that would
cause v4l2_subdev_call_state_try() to crash.

Add proper error handling to v4l2_subdev_call_state_try().
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 5b0057459cdc243ffb35617603142dcace09c711
Version 982c0487185bd466059ff618f398a8d074ddb654
Status affected
Version < ed30811fbed40751deb952bde534aa2632dc0bf7
Version 982c0487185bd466059ff618f398a8d074ddb654
Status affected
Version < 94e6336dc1f06a06f5b4cd04d4a012bba34f2857
Version 982c0487185bd466059ff618f398a8d074ddb654
Status affected
Version < a553530b3314a0bdc98cf114cdbe204551a70a00
Version 982c0487185bd466059ff618f398a8d074ddb654
Status affected
Version < f37df9a0eb5e43fcfe02cbaef076123dc0d79c7e
Version 982c0487185bd466059ff618f398a8d074ddb654
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.0
Status affected
Version < 6.0
Version 0
Status unaffected
Version <= 6.1.*
Version 6.1.157
Status unaffected
Version <= 6.6.*
Version 6.6.113
Status unaffected
Version <= 6.12.*
Version 6.12.54
Status unaffected
Version <= 6.17.*
Version 6.17.4
Status unaffected
Version <= *
Version 6.18
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.064
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String