CVE-2026-63935

Source
https://cve.org/CVERecord?id=CVE-2026-63935
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63935.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-63935
Downstream
Published
2026-07-19T14:55:33.321Z
Modified
2026-07-21T03:47:38.264277524Z
Summary
iio: adc: nxp-sar-adc: fix division by zero in write_raw
Details

In the Linux kernel, the following vulnerability has been resolved:

iio: adc: nxp-sar-adc: fix division by zero in write_raw

Add a validation check for the sampling frequency value before using it as a divisor. A user writing zero or a negative value to the sampling_frequency sysfs attribute triggers a division by zero in the kernel.

Also prevent unsigned integer underflow when the computed cycle count is smaller than NXPSARADCCONVTIME, which would wrap the u32 inpsamp to a huge value.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63935.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4434072a893e4864519c167947083ff3e4cc2d95
Fixed
cb6ea15e7d3c7518f806975a06b7d4c0a26402ea
Fixed
a9aba21a539c668a66b58eeb08ad3909e5a54c2a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63935.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
7.0.0
Fixed
7.0.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63935.json"