CVE Database
/

CVE-2025-40020

Back to search

CVE-2025-40020

Published: Oct 24, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: fix shift-out-of-bounds issue Explicitly uses a 64-bit constant when the number of bits used for its shifting is 32 (which is the case for PC CAN FD interfaces supported by this driver). [mkl: update subject, apply manually]

VendorProductVersions

Linux

Linux

affected
bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d - < 572c656802781cc57f4a3231eefa83547e75ed78
affected
bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d - < 61b1dd4c614935169d12bdecc26906e37b508618
affected
bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d - < 48822a59ecc47d353400d38b1941d3ae7591ffff
affected
bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d - < 176c81cbf9c4e348610a421aad800087c0401f60
affected
bb4785551f64e18b2c8bb15a3bd2b22f5ebf624d - < 17edec1830e48c0becd61642d0e40bc753243b16

+3 more versions

Linux

Linux

affected
3.4
unaffected
0 - < 3.4
unaffected
5.4.300 - <= 5.4.*
unaffected
5.10.245 - <= 5.10.*
unaffected
5.15.194 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now