CVE-2025-39921

MEDIUM

Linux Kernel 6.14-6.16.5 - Denial of Service via Zero Division in SPI QSPI Clock Setup

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: stop checking viability of op->max_freq in supports_op callback In commit 13529647743d9 ("spi: microchip-core-qspi: Support per spi-mem operation frequency switches") the logic for checking the viability of op->max_freq in mchp_coreqspi_setup_clock() was copied into mchp_coreqspi_supports_op(). Unfortunately, op->max_freq is not valid when this function is called during probe but is instead zero. Accordingly, baud_rate_val is calculated to be INT_MAX due to division by zero, causing probe of the attached memory device to fail. Seemingly spi-microchip-core-qspi was the only driver that had such a modification made to its supports_op callback when the per_op_freq capability was added, so just remove it to restore prior functionality.

Scores

CVSS v3 5.5
EPSS 0.0012
EPSS Percentile 2.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (9)
linux/Kernel 6.14.0 - 6.16.6linux
Linux/Linux < 6.14
Linux/Linux 13529647743d906ed3cf991f1d77727e7ff1fb6f - 89e7353f522f5cf70cb48c01ce2dcdcb275b8022
Linux/Linux 13529647743d906ed3cf991f1d77727e7ff1fb6f - ac8a13f35d5b8996582b3f97b924838a5c570c18
Linux/Linux 6.14
Linux/Linux 6.16.6 - 6.16.*
Linux/Linux 6.17
linux/linux_kernel 6.17 rc1 (4 CPE variants)
linux/linux_kernel 6.14 - 6.16.6
Published Oct 01, 2025
Tracked Since Feb 18, 2026