CVE-2025-37770

In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

05 Nov 2025, 15:02

Type Values Removed Values Added
CWE CWE-369
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
First Time Debian debian Linux
Linux
Debian
Linux linux Kernel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/05de66de280ea1bd0459c994bfd2dd332cfbc2a9 - () https://git.kernel.org/stable/c/05de66de280ea1bd0459c994bfd2dd332cfbc2a9 - Patch
References () https://git.kernel.org/stable/c/0c02fcbe4a1393a3c02da6ae35e72493cfdb2155 - () https://git.kernel.org/stable/c/0c02fcbe4a1393a3c02da6ae35e72493cfdb2155 - Patch
References () https://git.kernel.org/stable/c/4b8c3c0d17c07f301011e2908fecd2ebdcfe3d1c - () https://git.kernel.org/stable/c/4b8c3c0d17c07f301011e2908fecd2ebdcfe3d1c - Patch
References () https://git.kernel.org/stable/c/587de3ca7875c06fe3c3aa4073a85c4eff46591f - () https://git.kernel.org/stable/c/587de3ca7875c06fe3c3aa4073a85c4eff46591f - Patch
References () https://git.kernel.org/stable/c/836a189fb422e7efb81c51d5160e47ec7bc11500 - () https://git.kernel.org/stable/c/836a189fb422e7efb81c51d5160e47ec7bc11500 - Patch
References () https://git.kernel.org/stable/c/bd4d90adbca1862d03e581e10e74ab73ec75e61b - () https://git.kernel.org/stable/c/bd4d90adbca1862d03e581e10e74ab73ec75e61b - Patch
References () https://git.kernel.org/stable/c/e109528bbf460e50074c156253d9080d223ee37f - () https://git.kernel.org/stable/c/e109528bbf460e50074c156253d9080d223ee37f - Patch
References () https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html - () https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html - Mailing List
References () https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html - () https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html - Mailing List

03 Nov 2025, 20:18

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html -
  • () https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html -

02 May 2025, 13:53

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: drm/amd/pm: Impide la división por cero. El usuario puede establecer cualquier valor de velocidad. Si la velocidad es superior a UINT_MAX/8, es posible la división por cero. Encontrada por el Centro de Verificación de Linux (linuxtesting.org) con SVACE.

02 May 2025, 07:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/0c02fcbe4a1393a3c02da6ae35e72493cfdb2155 -
  • () https://git.kernel.org/stable/c/e109528bbf460e50074c156253d9080d223ee37f -

01 May 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-01 14:15

Updated : 2025-11-05 15:02


NVD link : CVE-2025-37770

Mitre link : CVE-2025-37770

CVE.ORG link : CVE-2025-37770


JSON object : View

Products Affected

debian

  • debian_linux

linux

  • linux_kernel
CWE
CWE-369

Divide By Zero