๐Ÿ” CVE Alert

CVE-2025-40106

UNKNOWN 0.0

comedi: fix divide-by-zero in comedi_buf_munge()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: comedi: fix divide-by-zero in comedi_buf_munge() The comedi_buf_munge() function performs a modulo operation `async->munge_chan %= async->cmd.chanlist_len` without first checking if chanlist_len is zero. If a user program submits a command with chanlist_len set to zero, this causes a divide-by-zero error when the device processes data in the interrupt handler path. Add a check for zero chanlist_len at the beginning of the function, similar to the existing checks for !map and CMDF_RAWDATA flag. When chanlist_len is zero, update munge_count and return early, indicating the data was handled without munging. This prevents potential kernel panics from malformed user commands.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Oct 31, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 4ffea48c69cb2b96a281cb7e5e42d706996631db ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 8f3e4cd9be4b47246ea73ce5e3e0fa2f57f0d10c ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 2670932f2465793fea1ef073e40883e8390fa4d9 ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 6db19822512396be1a3e1e20c16c97270285ba1a ed9eccbe8970f6eedc1b978c157caf1251a896d4 < d4854eff25efb06d0d84c13e7129bbdba4125f8c ed9eccbe8970f6eedc1b978c157caf1251a896d4 < a4bb5d1bc2f238461bcbe5303eb500466690bb2c ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 55520f65fd447e04099a2c44185453c18ea73b7e ed9eccbe8970f6eedc1b978c157caf1251a896d4 < 87b318ba81dda2ee7b603f4f6c55e78ec3e95974
Linux / Linux
2.6.29

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/4ffea48c69cb2b96a281cb7e5e42d706996631db git.kernel.org: https://git.kernel.org/stable/c/8f3e4cd9be4b47246ea73ce5e3e0fa2f57f0d10c git.kernel.org: https://git.kernel.org/stable/c/2670932f2465793fea1ef073e40883e8390fa4d9 git.kernel.org: https://git.kernel.org/stable/c/6db19822512396be1a3e1e20c16c97270285ba1a git.kernel.org: https://git.kernel.org/stable/c/d4854eff25efb06d0d84c13e7129bbdba4125f8c git.kernel.org: https://git.kernel.org/stable/c/a4bb5d1bc2f238461bcbe5303eb500466690bb2c git.kernel.org: https://git.kernel.org/stable/c/55520f65fd447e04099a2c44185453c18ea73b7e git.kernel.org: https://git.kernel.org/stable/c/87b318ba81dda2ee7b603f4f6c55e78ec3e95974