{ "schema_version": "1.4.0", "id": "GHSA-7rj5-g3mr-xmp6", "modified": "2025-09-05T18:31:27Z", "published": "2025-09-05T18:31:27Z", "aliases": [ "CVE-2025-39712" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: mt9m114: Fix deadlock in get_frame_interval/set_frame_interval\n\nGetting / Setting the frame interval using the V4L2 subdev pad ops\nget_frame_interval/set_frame_interval causes a deadlock, as the\nsubdev state is locked in the [1] but also in the driver itself.\n\nIn [2] it's described that the caller is responsible to acquire and\nrelease the lock in this case. Therefore, acquiring the lock in the\ndriver is wrong.\n\nRemove the lock acquisitions/releases from mt9m114_ifp_get_frame_interval()\nand mt9m114_ifp_set_frame_interval().\n\n[1] drivers/media/v4l2-core/v4l2-subdev.c - line 1129\n[2] Documentation/driver-api/media/v4l2-subdev.rst", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-39712" }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/0d23b548d71e5d76955fdf1d73addd8f6494f602" }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/298d1471cf83d5a2a05970e41822a2403f451086" }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/41b97490a1656bdc7038d6345a84b08d45deafc6" } ], "database_specific": { "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-09-05T18:15:48Z" } }