CVE-2025-38519

MEDIUM

Linux Kernel < 6.15.7 - Divide By Zero

Title source: rule
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: mm/damon: fix divide by zero in damon_get_intervals_score() The current implementation allows having zero size regions with no special reasons, but damon_get_intervals_score() gets crashed by divide by zero when the region size is zero. [ 29.403950] Oops: divide error: 0000 [#1] SMP NOPTI This patch fixes the bug, but does not disallow zero size regions to keep the backward compatibility since disallowing zero size regions might be a breaking change for some users. In addition, the same crash can happen when intervals_goal.access_bp is zero so this should be fixed in stable trees as well.

Scores

CVSS v3 5.5
EPSS 0.0002
EPSS Percentile 5.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-369
Status published
Products (3)
linux/Kernel 6.15.0 - 6.15.7linux
linux/linux_kernel 6.16 rc1 (5 CPE variants)
linux/linux_kernel 6.15 - 6.15.7
Published Aug 16, 2025
Tracked Since Feb 18, 2026