CVE-2026-43312

MEDIUM EPSS 2.4%
Published May 8, 20261mo ago · Modified Jun 17, 20262w ago
5.5 CVSS 3.1
Medium
Find Similar
Published May 8, 2026 1mo ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5647: Initialize subdev before controls In ov5647_init_controls() we call v4l2_get_subdevdata, but it is initialized by v4l2_i2c_subdev_init() in the probe, which currently happens after init_controls(). This can result in a segfault if the error condition is hit, and we try to access i2c_client, so fix the order.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
2.4% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 6

VendorProductVersionRange
linuxlinux_kernel*≥5.12  –  <5.15.202
linuxlinux_kernel*≥5.16  –  <6.1.165
linuxlinux_kernel*≥6.2  –  <6.6.128
linuxlinux_kernel*≥6.7  –  <6.12.75
linuxlinux_kernel*≥6.13  –  <6.18.16
linuxlinux_kernel*≥6.19  –  <6.19.6

References 7

  • git.kernel.org https://git.kernel.org/stable/c/2dedda97a64e7735844609c6c77c0dd953d73833
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/59e372aa4cf60e2500eba7f978acdcb18bb49032
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8ecb21c20387cc0c8aa00489a21ccc69f6b0f5d1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cabd025182cfed4a19b3aab57493e312d681e398
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/eee13cbccacb6d0a3120c126b8544030905b069d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f2a1998bc0053ebfe137f65081ed13afd9f34502
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fb69e4842f5b463ff5f121d2ac7746014e3477ea
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/2dedda97a64e7735844609c6c77c0dd953d73833
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/59e372aa4cf60e2500eba7f978acdcb18bb49032
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8ecb21c20387cc0c8aa00489a21ccc69f6b0f5d1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cabd025182cfed4a19b3aab57493e312d681e398
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/eee13cbccacb6d0a3120c126b8544030905b069d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f2a1998bc0053ebfe137f65081ed13afd9f34502
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fb69e4842f5b463ff5f121d2ac7746014e3477ea
    Patch