CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2025-21793: spi: sn-f-ospi: Fix division by zero

Description

In the Linux kernel, the following vulnerability has been resolved:

spi: sn-f-ospi: Fix division by zero

When there is no dummy cycle in the spi-nor commands, both dummy bus cycle
bytes and width are zero. Because of the cpu's warning when divided by
zero, the warning should be avoided. Return just zero to avoid such
calculations.

Classification

CVE ID: CVE-2025-21793

Affected Products

Vendor: Linux, Linux

Product: Linux, Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 1.64% (scored less or equal to compared to others)

EPSS Date: 2025-03-27 (when was this score calculated)

References

https://nvd.nist.gov/vuln/detail/CVE-2025-21793
https://git.kernel.org/stable/c/966328191b4c389c0f2159fa242915f51cbc1679
https://git.kernel.org/stable/c/4df6f005bef04a3dd16c028124a1b5684db3922b
https://git.kernel.org/stable/c/7434135553bc03809a55803ee6a8dcaae6240d55
https://git.kernel.org/stable/c/3588b1c0fde2f58d166e3f94a5a58d64b893526c

Timeline