CVE-2025-40016 | Linux Kernel up to 6.6.109/6.12.50/6.16.10/6.17.0 uvcvideo mc-entity.c initialization (Nessus ID 271664 / WID-SEC-2025-2350)
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.6.109/6.12.50/6.16.10/6.17.0. This vulnerability affects unknown code of the file drivers/media/mc/mc-entity.c of the component uvcvideo. The manipulation leads to improper initialization.
This vulnerability is uniquely identified as CVE-2025-40016. The attack can only be initiated within the local network. No exploit exists.
It is advisable to upgrade the affected component.