Linux Kernel HP 5MP Camera HID Sensor Interface Vulnerability

Vulnerability

A vulnerability in the Linux kernel affects the HP 5MP Camera (USB ID 0408:5473), which incorrectly reports a HID sensor interface that is not implemented. Accessing this non-functional sensor through 'iio_info' can cause system hangs, as the runtime power management attempts to wake up an unresponsive sensor. The vulnerability has been addressed by adding the device to the HID ignore list, preventing the non-functional sensor interface from being exposed to userspace.

Impact

Exploitation of this vulnerability can lead to system hangs, caused by runtime power management trying to interact with an unresponsive sensor.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.