CVE Database
/

CVE-2026-31770

Back to search

CVE-2026-31770

Published: May 1, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: hwmon: (occ) Fix division by zero in occ_show_power_1() In occ_show_power_1() case 1, the accumulator is divided by update_tag without checking for zero. If no samples have been collected yet (e.g. during early boot when the sensor block is included but hasn't been updated), update_tag is zero, causing a kernel divide-by-zero crash. The 2019 fix in commit 211186cae14d ("hwmon: (occ) Fix division by zero issue") only addressed occ_get_powr_avg() used by occ_show_power_2() and occ_show_power_a0(). This separate code path in occ_show_power_1() was missed. Fix this by reusing the existing occ_get_powr_avg() helper, which already handles the zero-sample case and uses mul_u64_u32_div() to multiply before dividing for better precision. Move the helper above occ_show_power_1() so it is visible at the call site. [groeck: Fix alignment problems reported by checkpatch]

VendorProductVersions

Linux

Linux

affected
c10e753d43ebd1d17e1c62bcee20c6124c2c7cca - < c7d3712362c8ab8f82f441b649d9e446e7b9aa9d
affected
c10e753d43ebd1d17e1c62bcee20c6124c2c7cca - < 53e6175756b8c474b6247bbcea0aad3d68357475
affected
c10e753d43ebd1d17e1c62bcee20c6124c2c7cca - < 2502684b9e835de9a992ec47c3e6c6faabe3858d
affected
c10e753d43ebd1d17e1c62bcee20c6124c2c7cca - < 37ae8fadc74ed68e5bc364ffd17746d88e449ae3
affected
c10e753d43ebd1d17e1c62bcee20c6124c2c7cca - < bbbefc48f6617cfb738dcff7f44beb50b5dfeb38

+3 more versions

Linux

Linux

affected
5.0
unaffected
0 - < 5.0
unaffected
5.10.253 - <= 5.10.*
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.168 - <= 6.1.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now