Home

Description

In the Linux kernel, the following vulnerability has been resolved: HID: quirks: Add quirk for 2 Chicony Electronics HP 5MP Cameras The Chicony Electronics HP 5MP Cameras (USB ID 04F2:B824 & 04F2:B82C) report a HID sensor interface that is not actually implemented. Attempting to access this non-functional sensor via iio_info causes system hangs as runtime PM tries to wake up an unresponsive sensor. Add these 2 devices to the HID ignore list since the sensor interface is non-functional by design and should not be exposed to userspace.

PUBLISHED Reserved 2025-04-16 | Published 2025-08-16 | Updated 2026-05-11 | Assigner Linux

Product status

Default status
unaffected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 35f1a5360ac68d9629abbb3930a0a07901cba296
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 7ac00f019698f614a49cce34c198d0568ab0e1c2
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 1b297ab6f38ca60a4ca7298b297944ec6043b2f4
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 2b0931eee48208c25bb77486946dea8e96aa6a36
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 3ce1d87d1f5d80322757aa917182deb7370963b9
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before c72536350e82b53a1be0f3bfdf1511bba2827102
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before a2a91abd19c574b598b1c69ad76ad9c7eedaf062
affected

83499b52c61f50292f0aae36499de8a8fc3e37c3 (git) before 54bae4c17c11688339eb73a04fd24203bb6e7494
affected

Default status
affected

3.8
affected

Any version before 3.8
unaffected

5.4.296 (semver)
unaffected

5.10.240 (semver)
unaffected

5.15.189 (semver)
unaffected

6.1.146 (semver)
unaffected

6.6.99 (semver)
unaffected

6.12.39 (semver)
unaffected

6.15.7 (semver)
unaffected

6.16 (original_commit_for_fix)
unaffected

References

lists.debian.org/debian-lts-announce/2025/10/msg00008.html

lists.debian.org/debian-lts-announce/2025/10/msg00007.html

git.kernel.org/...c/35f1a5360ac68d9629abbb3930a0a07901cba296

git.kernel.org/...c/7ac00f019698f614a49cce34c198d0568ab0e1c2

git.kernel.org/...c/1b297ab6f38ca60a4ca7298b297944ec6043b2f4

git.kernel.org/...c/2b0931eee48208c25bb77486946dea8e96aa6a36

git.kernel.org/...c/3ce1d87d1f5d80322757aa917182deb7370963b9

git.kernel.org/...c/c72536350e82b53a1be0f3bfdf1511bba2827102

git.kernel.org/...c/a2a91abd19c574b598b1c69ad76ad9c7eedaf062

git.kernel.org/...c/54bae4c17c11688339eb73a04fd24203bb6e7494

cve.org (CVE-2025-38540)

nvd.nist.gov (CVE-2025-38540)

Download JSON