iio: chemical: scd30: fix division by zero in write_raw

Summary

CVECVE-2026-63931
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-07-19 16:17:11 UTC
Updated2026-07-19 16:17:11 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: iio: chemical: scd30: fix division by zero in write_raw Add a zero check for val2 before using it as a divisor when setting the sampling frequency. A user writing a zero fractional part to the sampling_frequency sysfs attribute triggers a division by zero in the kernel.

Risk And Classification

EPSS: 0.002100000 probability, percentile 0.113650000 (date 2026-07-20)

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 4748bce423a363bb8a85a624faeb8f54fe331611 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 6308b812acdcac38cbfe1af0b1524c3375f408a5 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 c7a740bf75554b051fabb17596ca6e483d6e6d90 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 e85bc501947f5ae16dd9adc01162b76d55ab7962 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 d98c2e69aab905d1b19a69ffe584efa46a9efd42 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 5e4d34092a5ebfbc3a45a180c76ecb1cdbbedd53 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 2c50c017df97bfb425038efdfb8514c7bcd08564 git Not specified
CNA Linux Linux affected 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 5aba4f94b225617a55fed442a70329b2ee19c0a5 git Not specified
CNA Linux Linux affected 5.9 Not specified
CNA Linux Linux unaffected 5.9 semver Not specified
CNA Linux Linux unaffected 5.10.259 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.210 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.176 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.143 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.93 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.35 6.18.* semver Not specified
CNA Linux Linux unaffected 7.0.12 7.0.* semver Not specified
CNA Linux Linux unaffected 7.1 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/e85bc501947f5ae16dd9adc01162b76d55ab7962 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/5e4d34092a5ebfbc3a45a180c76ecb1cdbbedd53 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/c7a740bf75554b051fabb17596ca6e483d6e6d90 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/6308b812acdcac38cbfe1af0b1524c3375f408a5 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/5aba4f94b225617a55fed442a70329b2ee19c0a5 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/2c50c017df97bfb425038efdfb8514c7bcd08564 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/4748bce423a363bb8a85a624faeb8f54fe331611 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/d98c2e69aab905d1b19a69ffe584efa46a9efd42 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report