cbcvebase.
CVE-2025-37770
published 2025-05-01

CVE-2025-37770: In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
9.4th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE.

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
debianlinux-6.1< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
linuxlinux
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < e109528bbf460e50074c156253d9080d223ee37fe109528bbf460e50074c156253d9080d223ee37f
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < 0c02fcbe4a1393a3c02da6ae35e72493cfdb21550c02fcbe4a1393a3c02da6ae35e72493cfdb2155
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < 836a189fb422e7efb81c51d5160e47ec7bc11500836a189fb422e7efb81c51d5160e47ec7bc11500
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < 587de3ca7875c06fe3c3aa4073a85c4eff46591f587de3ca7875c06fe3c3aa4073a85c4eff46591f
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < bd4d90adbca1862d03e581e10e74ab73ec75e61bbd4d90adbca1862d03e581e10e74ab73ec75e61b
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < 05de66de280ea1bd0459c994bfd2dd332cfbc2a905de66de280ea1bd0459c994bfd2dd332cfbc2a9
linuxlinux>= c52dcf49195d06319189c7f1dd8b62bfca545197 < 4b8c3c0d17c07f301011e2908fecd2ebdcfe3d1c4b8c3c0d17c07f301011e2908fecd2ebdcfe3d1c
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.135-16.1.135-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 4.20 < 5.10.2375.10.237
linuxlinux_kernel>= 5.11 < 5.15.1815.15.181
linuxlinux_kernel>= 5.16 < 6.1.1356.1.135
linuxlinux_kernel>= 6.13 < 6.14.46.14.4
linuxlinux_kernel>= 6.2 < 6.6.886.6.88
linuxlinux_kernel>= 6.7 < 6.12.256.12.25
msrcazl3_kernel_6.6.85.1-4_on_azure_linux_3.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.