Home

Description

In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: fix shift-out-of-bounds issue Explicitly uses a 64-bit constant when the number of bits used for its shifting is 32 (which is the case for PC CAN FD interfaces supported by this driver). [mkl: update subject, apply manually]

PUBLISHED Reserved 2025-04-16 | Published 2025-10-24 | Updated 2025-10-24 | Assigner Linux

Product status

Default status
unaffected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 572c656802781cc57f4a3231eefa83547e75ed78
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 61b1dd4c614935169d12bdecc26906e37b508618
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 48822a59ecc47d353400d38b1941d3ae7591ffff
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 176c81cbf9c4e348610a421aad800087c0401f60
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 17edec1830e48c0becd61642d0e40bc753243b16
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before eb79ed970670344380e77d62f8188e8015648d94
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before 394c58017e5f41043584c345106cae16a4613710
affected

bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d (git) before c443be70aaee42c2d1d251e0329e0a69dd96ae54
affected

Default status
affected

3.4
affected

Any version before 3.4
unaffected

5.4.300 (semver)
unaffected

5.10.245 (semver)
unaffected

5.15.194 (semver)
unaffected

6.1.155 (semver)
unaffected

6.6.109 (semver)
unaffected

6.12.50 (semver)
unaffected

6.16.10 (semver)
unaffected

6.17 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/572c656802781cc57f4a3231eefa83547e75ed78

git.kernel.org/...c/61b1dd4c614935169d12bdecc26906e37b508618

git.kernel.org/...c/48822a59ecc47d353400d38b1941d3ae7591ffff

git.kernel.org/...c/176c81cbf9c4e348610a421aad800087c0401f60

git.kernel.org/...c/17edec1830e48c0becd61642d0e40bc753243b16

git.kernel.org/...c/eb79ed970670344380e77d62f8188e8015648d94

git.kernel.org/...c/394c58017e5f41043584c345106cae16a4613710

git.kernel.org/...c/c443be70aaee42c2d1d251e0329e0a69dd96ae54

cve.org (CVE-2025-40020)

nvd.nist.gov (CVE-2025-40020)

Download JSON