cbcvebase.
CVE-2025-37937
published 2025-05-20

CVE-2025-37937: In the Linux kernel, the following vulnerability has been resolved: objtool, media: dib8000: Prevent divide-by-zero in dib8000_set_dds() If dib8000_set_dds()'s…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.6th percentile
In the Linux kernel, the following vulnerability has been resolved: objtool, media: dib8000: Prevent divide-by-zero in dib8000_set_dds() If dib8000_set_dds()'s call to dib8000_read32() returns zero, the result is a divide-by-zero. Prevent that from happening. Fixes the following warning with an UBSAN kernel: drivers/media/dvb-frontends/dib8000.o: warning: objtool: dib8000_tune() falls through to next function dib8096p_cfg_DibRx()

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
debianlinux-6.1< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
linuxlinux
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < 536f7f3595ef8187cfa9ea50d7d24fcf4e84e166536f7f3595ef8187cfa9ea50d7d24fcf4e84e166
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < 976a85782246a29ba0f6d411a7a4f524cb9ea987976a85782246a29ba0f6d411a7a4f524cb9ea987
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < 9b76b198cf209797abcb1314c18ddeb90fe0827b9b76b198cf209797abcb1314c18ddeb90fe0827b
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < b9249da6b0ed56269d4f21850df8e5b35dab50bdb9249da6b0ed56269d4f21850df8e5b35dab50bd
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < 75b42dfe87657ede3da3f279bd6b1b16d69af95475b42dfe87657ede3da3f279bd6b1b16d69af954
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < cd80277f652138d2619f149f86ae6d17bce721d1cd80277f652138d2619f149f86ae6d17bce721d1
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < c8430e72b99936c206b37a8e2daebb3f8df7f2d8c8430e72b99936c206b37a8e2daebb3f8df7f2d8
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < 6cfe46036b163e5a0f07c6b705b518148e1a8b2f6cfe46036b163e5a0f07c6b705b518148e1a8b2f
linuxlinux>= 173a64cb3fcff1993b2aa8113e53fd379f6a968f < e63d465f59011dede0a0f1d21718b59a64c3ff5ce63d465f59011dede0a0f1d21718b59a64c3ff5c
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.135-16.1.135-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 5.15.0-142.1525.15.0-142.152
linuxlinux_kernel>= 0 < 6.8.0-86.876.8.0-86.87
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 0 < 5.4.0-218.2385.4.0-218.238
linuxlinux_kernel>= 3.10 < 5.4.2925.4.292
linuxlinux_kernel>= 5.11 < 5.15.1805.15.180
linuxlinux_kernel>= 5.16 < 6.1.1346.1.134
linuxlinux_kernel>= 5.5 < 5.10.2365.10.236

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.