Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-39728

18
FAUCET Score

CVE-2025-39728 addresses an array out-of-bounds vulnerability in the Linux kernel's Samsung clock driver (samsung_clk_init()), specifically affecting Linux kernel versions. This flaw, rated Medium severity (CVSS 5.5), can lead to a system panic and denial of service (DoS) due to incorrect initialization order of clock data. Exploitation requires local access and low privileges, but does not involve user interaction. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.5, < 5.10.236CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.180CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.134CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.87CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.12.23CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.24%
Probability of exploitation in next 30 days
EPSS Percentile
15.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0024 is in the 67th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (9)

autodeskpatch availablevia llm_extracted
View patch
freepbxpatch availablevia llm_extracted
View patch
honeywellpatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: 19734-17084Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: cbl2 kernel 5.15.176.3-3 on CBL Mariner 2.0Fixed in: 5.15.180.1-1
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.85.1-4 on Azure Linux 3.0Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: 19705-17086Fixed in: 5.15.180.1-1
microsoftpatch availablevia msrc
Product: 17099-17086Fixed in: 5.15.180.1-1
grafanavendor investigatingvia llm_extracted
View patch

Vendor Advisories (6)

grafanallm-grafana-3bfe68bd8f94bc6dCRITICAL

HP ThinPro 8.1 SP9 Security Updates

Feb 2, 2026
honeywellllm-honeywell-c82b5cfda9df97a3CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
autodeskllm-autodesk-c365b674a2ff5a3aCRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
freepbxllm-freepbx-e54908c7967265f6CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
redhatCVE-2025-39728Moderate

kernel: clk: samsung: Fix UBSAN panic in samsung_clk_init()

Apr 18, 2025
microsoft2025-Apr/CVE-2025-39728

clk: samsung: Fix UBSAN panic in samsung_clk_init()

Apr 8, 2025

References

git.kernel.org / stable/c/00307934eb94aaa0a99addfb37b9fe206f945004
Patch
git.kernel.org / stable/c/0fef48f4a70e45a93e73c39023c3a6ea624714d6
Patch
git.kernel.org / stable/c/157de9e48007a20c65d02fc0229a16f38134a72d
Patch
git.kernel.org / stable/c/24307866e0ac0a5ddb462e766ceda5e27a6fbbe3
Patch
git.kernel.org / stable/c/4d29a6dcb51e346595a15b49693eeb728925ca43
Patch
git.kernel.org / stable/c/a1500b98cd81a32fdfb9bc63c33bb9f0c2a0a1bf
Patch
git.kernel.org / stable/c/d19d7345a7bcdb083b65568a11b11adffe0687af
Patch
git.kernel.org / stable/c/d974e177369c034984cece9d7d4fada9f8b9c740
Patch
lists.debian.org / debian-lts-announce/2025/05/msg00030.html
lists.debian.org / debian-lts-announce/2025/05/msg00045.html