« Volver al listado

CVE-2026-68356

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

watchdog: airoha: Prevent division by zero when clock frequency is zero

clk_get_rate() can return 0 when the clock provider is not properly configured or the clock is unmanaged. The driver uses wdt_freq as a divisor directly in airoha_wdt_probe() to compute max_timeout and in airoha_wdt_get_timeleft() to compute the remaining time, which results in a division by zero.

Add a check for wdt_freq == 0 in probe and return -EINVAL with dev_err_probe() to prevent the division by zero and provide a diagnostic message.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-68356",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "3cf67f3769b8227ca75ca7102180a2e270ee01aa",
              "lessThan": "8681e5addf7171602616e256a09057697dcc75ca",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "3cf67f3769b8227ca75ca7102180a2e270ee01aa",
              "lessThan": "57c3f5bd5be008cd5b4ff6a45b7cb90f5ca45a37",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "3cf67f3769b8227ca75ca7102180a2e270ee01aa",
              "lessThan": "bcfcd7619f277842430d197556463b401b839ee9",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/watchdog/airoha_wdt.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.13"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "6.13",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "6.18.42",
              "versionType": "semver",
              "lessThanOrEqual": "6.18.*"
            },
            {
              "status": "unaffected",
              "version": "7.1.6",
              "versionType": "semver",
              "lessThanOrEqual": "7.1.*"
            },
            {
              "status": "unaffected",
              "version": "7.2",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/watchdog/airoha_wdt.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-08-10T13:20:28.050",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/57c3f5bd5be008cd5b4ff6a45b7cb90f5ca45a37",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/8681e5addf7171602616e256a09057697dcc75ca",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/bcfcd7619f277842430d197556463b401b839ee9",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nwatchdog: airoha: Prevent division by zero when clock frequency is zero\n\nclk_get_rate() can return 0 when the clock provider is not properly\nconfigured or the clock is unmanaged. The driver uses wdt_freq as a\ndivisor directly in airoha_wdt_probe() to compute max_timeout and in\nairoha_wdt_get_timeleft() to compute the remaining time, which results\nin a division by zero.\n\nAdd a check for wdt_freq == 0 in probe and return -EINVAL with\ndev_err_probe() to prevent the division by zero and provide a\ndiagnostic message."
    }
  ],
  "lastModified": "2026-08-17T06:17:43.890",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}