CVE-2026-43312
Published: May 8, 2026
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5647: Initialize subdev before controls In ov5647_init_controls() we call v4l2_get_subdevdata, but it is initialized by v4l2_i2c_subdev_init() in the probe, which currently happens after init_controls(). This can result in a segfault if the error condition is hit, and we try to access i2c_client, so fix the order.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 4974c2f19fd810ec9a4e534bfc69e176256b7a03 - < f2a1998bc0053ebfe137f65081ed13afd9f34502affected 4974c2f19fd810ec9a4e534bfc69e176256b7a03 - < 59e372aa4cf60e2500eba7f978acdcb18bb49032affected 4974c2f19fd810ec9a4e534bfc69e176256b7a03 - < cabd025182cfed4a19b3aab57493e312d681e398affected 4974c2f19fd810ec9a4e534bfc69e176256b7a03 - < 2dedda97a64e7735844609c6c77c0dd953d73833affected 4974c2f19fd810ec9a4e534bfc69e176256b7a03 - < 8ecb21c20387cc0c8aa00489a21ccc69f6b0f5d1+2 more versions |
Linux | Linux | affected 5.12unaffected 0 - < 5.12unaffected 5.15.202 - <= 5.15.*unaffected 6.1.165 - <= 6.1.*unaffected 6.6.128 - <= 6.6.*+4 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now