PT-2025-22158 · Linux+3 · Linux Kernel+3

Published

2025-04-24

·

Updated

2025-11-17

·

CVE-2025-37896

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A divide error issue has been identified in the Linux kernel related to SPI flash memory operations. Specifically, when calculating the duration for SPI memory operations with zero dummy bytes, a divide error occurs in the spi mem calc op duration() function. This issue affects certain SPI flash memory devices, such as Winbond SPINAND flash memory devices, where the write cache and update cache operation variants have zero dummy bytes. The error is characterized by an "Oops: divide error" message.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Divide By Zero

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03282
CVE-2025-37896
USN-7649-1
USN-7649-2
USN-7650-1
USN-7665-1
USN-7665-2
USN-7721-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Ubuntu