CVE-2025-40207 | Linux Kernel up to 6.1.156/6.6.112/6.12.53/6.17.3 media v4l2_subdev_call_state_try returned allocation of resources
A vulnerability was found in Linux Kernel up to 6.1.156/6.6.112/6.12.53/6.17.3. It has been declared as critical. This affects the function v4l2_subdev_call_state_try of the component media. The manipulation of the argument returned results in allocation of resources.
This vulnerability was named CVE-2025-40207. The attack needs to be approached within the local network. There is no available exploit.
It is recommended to upgrade the affected component.