ThreatCluster

CVE-2024-57978 and CVE-2025-38225 Address imx-jpeg Vulnerabilities

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 39

Article Content

Browse articles
ThreatCluster

Two vulnerabilities in the imx-jpeg media driver have been identified. CVE-2024-57978 involves a potential error pointer dereference in the detach_pm() function, while CVE-2025-38225 addresses cleanup after an allocation error. Both vulnerabilities could affect systems utilizing this driver.

Timeline

2025-02-27
CVE-2024-57978 published
2025-07-04
CVE-2025-38225 published
2026-02-18
Information published on CVE-2024-57978 and CVE-2025-38225