CVE-2025-40020

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/10/2025
Last modified:
27/10/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> can: peak_usb: fix shift-out-of-bounds issue<br /> <br /> Explicitly uses a 64-bit constant when the number of bits used for its<br /> shifting is 32 (which is the case for PC CAN FD interfaces supported by<br /> this driver).<br /> <br /> [mkl: update subject, apply manually]

Impact