CVE-2025-40015
published 2025-10-20CVE-2025-40015: In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start'…
PriorityP420
EPSS
0.22%
12.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while
assigning a value to the 'src_pad'. However the same value is being
checked against NULL at a later point of time indicating that there
are chances that the value can be NULL.
Move the dereference after the NULL check.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.16.11-1 (forky) | linux 6.16.11-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= e7bad98c205d17c745de9d83ebf73e53cbf99d48 < 1f053d82e59c785b2b939cbed12f13657f84b296 | 1f053d82e59c785b2b939cbed12f13657f84b296 |
| linux | linux | >= e7bad98c205d17c745de9d83ebf73e53cbf99d48 < 4eeafff163e80d576c5efc1360ae310c0ceedd02 | 4eeafff163e80d576c5efc1360ae310c0ceedd02 |
| linux | linux | >= e7bad98c205d17c745de9d83ebf73e53cbf99d48 < 80eaf32672871bd2623ce6ba13ffc1f018756580 | 80eaf32672871bd2623ce6ba13ffc1f018756580 |
| linux | linux_kernel | >= 0 < 6.16.11-1 | 6.16.11-1 |
| linux | linux_kernel | >= 6.15.0 < 6.16.11 | 6.16.11 |
| linux | linux_kernel | >= 6.17.0 < 6.17.1 | 6.17.1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: media: stm32-csi: Fix dereference before NULL check
vendor_redhat·2025-10-20
CVE-2025-40015 kernel: media: stm32-csi: Fix dereference before NULL check
kernel: media: stm32-csi: Fix dereference before NULL check
In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while
assigning a value to the 'src_pad'. However the same value is being
checked against NULL at a later point of time indicating that there
are chances that the value can be NULL.
Move the dereference after the NULL check.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt
Debian
CVE-2025-40015: linux - In the Linux kernel, the following vulnerability has been resolved: media: stm3...
vendor_debian·2025
CVE-2025-40015 [LOW] CVE-2025-40015: linux - In the Linux kernel, the following vulnerability has been resolved: media: stm3...
In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while assigning a value to the 'src_pad'. However the same value is being checked against NULL at a later point of time indicating that there are chances that the value can be NULL. Move the dereference after the NULL check.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.16.11-1)
sid: resolved (fixed in 6.16.11-1)
trixie: resolved
OSV
CVE-2025-40015: In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start', 'csidev-
osv·2025-10-20
CVE-2025-40015 CVE-2025-40015: In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start', 'csidev-
In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while assigning a value to the 'src_pad'. However the same value is being checked against NULL at a later point of time indicating that there are chances that the value can be NULL. Move the dereference after the NULL check.
OSV
media: stm32-csi: Fix dereference before NULL check
osv·2025-10-20
CVE-2025-40015 media: stm32-csi: Fix dereference before NULL check
media: stm32-csi: Fix dereference before NULL check
In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while
assigning a value to the 'src_pad'. However the same value is being
checked against NULL at a later point of time indicating that there
are chances that the value can be NULL.
Move the dereference after the NULL check.
GHSA
GHSA-6ggw-vcg3-gj6g: In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'cside
ghsa_unreviewed·2025-10-20
CVE-2025-40015 GHSA-6ggw-vcg3-gj6g: In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'cside
In the Linux kernel, the following vulnerability has been resolved:
media: stm32-csi: Fix dereference before NULL check
In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while
assigning a value to the 'src_pad'. However the same value is being
checked against NULL at a later point of time indicating that there
are chances that the value can be NULL.
Move the dereference after the NULL check.
No detection rules found.
No public exploits indexed.
2025-10-20
Published