CVE-2026-63931

Summary

In the Linux kernel, the following vulnerability has been resolved:

iio: chemical: scd30: fix division by zero in write_raw

Add a zero check for val2 before using it as a divisor when setting the sampling frequency. A user writing a zero fractional part to the sampling_frequency sysfs attribute triggers a division by zero in the kernel.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < 4748bce423a363bb8a85a624faeb8f54fe331611affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < 6308b812acdcac38cbfe1af0b1524c3375f408a5affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < c7a740bf75554b051fabb17596ca6e483d6e6d90affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < e85bc501947f5ae16dd9adc01162b76d55ab7962affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < d98c2e69aab905d1b19a69ffe584efa46a9efd42affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < 5e4d34092a5ebfbc3a45a180c76ecb1cdbbedd53affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < 2c50c017df97bfb425038efdfb8514c7bcd08564affected
LinuxLinux64b3d8b1b0f5c16c19045785e4da8391ae35ec99 < 5aba4f94b225617a55fed442a70329b2ee19c0a5affected
LinuxLinux5.9affected
LinuxLinux0 < 5.9unaffected
LinuxLinux5.10.259 <= 5.10.*unaffected
LinuxLinux5.15.210 <= 5.15.*unaffected
LinuxLinux6.1.176 <= 6.1.*unaffected
LinuxLinux6.6.143 <= 6.6.*unaffected
LinuxLinux6.12.93 <= 6.12.*unaffected
LinuxLinux6.18.35 <= 6.18.*unaffected
LinuxLinux7.0.12 <= 7.0.*unaffected
LinuxLinux7.1 <= *unaffected

Weaknesses

References