CVE-2025-21793

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 27, 2025
Updated: Mar 5, 2025
CWE ID 369

Summary

CVE-2025-21793 is a vulnerability affecting the Linux kernel's SPI (Simple Peripheral Interface) component. When there is no dummy cycle in SPI commands, the spi-nor driver was found to perform division by zero, leading to potential warnings from the CPU. To mitigate this issue, the driver has been updated to simply return zero instead of performing the division. This change helps avoid such calculations and subsequent warnings.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share