First published: Wed Apr 02 2025(Updated: )
In the Linux kernel, the following vulnerability has been resolved: HID: ignore non-functional sensor in HP 5MP Camera The HP 5MP Camera (USB ID 0408:5473) reports a HID sensor interface that is not actually implemented. Attempting to access this non-functional sensor via iio_info causes system hangs as runtime PM tries to wake up an unresponsive sensor. [453] hid-sensor-hub 0003:0408:5473.0003: Report latency attributes: ffffffff:ffffffff [453] hid-sensor-hub 0003:0408:5473.0003: common attributes: 5:1, 2:1, 3:1 ffffffff:ffffffff Add this device to the HID ignore list since the sensor interface is non-functional by design and should not be exposed to userspace.
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
HP 5MP Camera | ||
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21992 has a low severity rating as it involves a non-functional sensor in the HP 5MP Camera.
To fix CVE-2025-21992, ensure that you are using an updated version of the Linux kernel that addresses this vulnerability.
CVE-2025-21992 affects the HP 5MP Camera and the Linux kernel.
The vulnerability CVE-2025-21992 involves the reporting of a non-functional HID sensor interface in the HP 5MP Camera.
No, CVE-2025-21992 is not considered a critical vulnerability as it does not lead to severe exploitation scenarios.