In the Linux kernel, the following vulnerability has been resolved:
hwmon: (occ) Fix division by zero in occ_show_power_1()
In occ_show_power_1() case 1, the accumulator is divided by
update_tag without checking for zero. If no samples have been
collected yet (e.g. during early boot when the sensor block is
included but hasn't been updated), update_tag is zero, causing
a kernel divide-by-zero crash.
The 2019 fix in commit 211186cae14d ("hwmon: (occ) Fix division by
zero issue") only addressed occ_get_powr_avg() used by
occ_show_power_2() and occ_show_power_a0(). This separate code
path in occ_show_power_1() was missed.
Fix this by reusing the existing occ_get_powr_avg() helper, which
already handles the zero-sample case and uses mul_u64_u32_div()
to multiply before dividing for better precision. Move the helper
above occ_show_power_1() so it is visible at the call site.
[groeck: Fix alignment problems reported by checkpatch]
References
Configurations
Configuration 1 (hide)
|
History
11 May 2026, 17:58
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/243d55bd3f08cb15eee9d63f4716d4d4cdd760f5 - Patch | |
| References | () https://git.kernel.org/stable/c/2502684b9e835de9a992ec47c3e6c6faabe3858d - Patch | |
| References | () https://git.kernel.org/stable/c/37ae8fadc74ed68e5bc364ffd17746d88e449ae3 - Patch | |
| References | () https://git.kernel.org/stable/c/39e2a5bf970402a8530a319cf06122e216ba57b8 - Patch | |
| References | () https://git.kernel.org/stable/c/53e6175756b8c474b6247bbcea0aad3d68357475 - Patch | |
| References | () https://git.kernel.org/stable/c/7b89ce0c98bf3015f493ca4285b2d1056cd8c733 - Patch | |
| References | () https://git.kernel.org/stable/c/bbbefc48f6617cfb738dcff7f44beb50b5dfeb38 - Patch | |
| References | () https://git.kernel.org/stable/c/c7d3712362c8ab8f82f441b649d9e446e7b9aa9d - Patch | |
| CPE | cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| CWE | CWE-369 | |
| First Time |
Linux linux Kernel
Linux |
01 May 2026, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-01 15:16
Updated : 2026-06-17 10:34
NVD link : CVE-2026-31770
Mitre link : CVE-2026-31770
CVE.ORG link : CVE-2026-31770
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-369
Divide By Zero
