CVE-2025-38237
Low
No strong exploitation signal.
CVSS base
5.5
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS — probability of exploitation (30 days)
0.2%
5.0th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2025-07-08 · modified 2026-09-02
CVSS breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
| Attack Vector | L | Local |
| Attack Complexity | L | Low |
| Privileges Required | L | Low |
| User Interaction | N | None |
| Scope | U | Unchanged |
| Confidentiality | N | None |
| Integrity | N | None |
| Availability | H | High |
Timeline
- 2025-07-08 — Published (NVD)
- 2026-09-02 — Last modified (NVD)
Description
In the Linux kernel, the following vulnerability has been resolved: media: platform: exynos4-is: Add hardware sync wait to fimc_is_hw_change_mode() In fimc_is_hw_change_mode(), the function changes camera modes without waiting for hardware completion, risking corrupted data or system hangs if subsequent operations proceed before the hardware is ready. Add fimc_is_hw_wait_intmsr0_intmsd0() after mode configuration, ensuring hardware state synchronization and stable interrupt handling.
Affected
References
- https://git.kernel.org/stable/c/14acbb5af101b7bb58c0952949bba4c5fdf0ee7e
- https://git.kernel.org/stable/c/2fbe83fe23f541798bcdd7d6b56a08d4ac205bad
- https://git.kernel.org/stable/c/71209954f1e8ff0f0ba944c8d3b64bbed83d400c
- https://git.kernel.org/stable/c/9b03c3ce32a685f9cb82d33c63fc18bfcee0ba1b
- https://git.kernel.org/stable/c/b0d92b94278561f43057003a73a17ce13b7c1a1a
- https://git.kernel.org/stable/c/bb97dfab7615fea97322b8a6131546e80f878a69
- https://git.kernel.org/stable/c/bd9f6ce7d512fa21249415c16af801a4ed5d97b6
- https://git.kernel.org/stable/c/e4077a10a25560ec0bd0b42322e4ea027d6f76e2
- https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html