CVE-2026-80871
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
crypto: xilinx-trng - Remove crypto_rng interface
Implementing the crypto_rng interface has no purpose, as it isn't used in practice. It's being removed from other drivers too. Just remove it. This leaves hwrng, which is actually used.
Tagging with 'Cc stable' due to the bugs that this removes:
xtrng_trng_generate() sometimes returned success even when it didn't fill in all the bytes.
It was possible for xtrng_trng_generate() and xtrng_hwrng_trng_read() to run concurrently and interfere with each other, as the locking code in xtrng_hwrng_trng_read() was broken.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 8979744aca8096ee5072798dfc1181606919b35d < 83f29da85dc9d9a32fe62cd1055e8e6705e6bf80 | affected |
| Linux | Linux | 8979744aca8096ee5072798dfc1181606919b35d < 9634db561e1594c151923f4950c012161c545c93 | affected |
| Linux | Linux | 8979744aca8096ee5072798dfc1181606919b35d < 32b4d29280ed2a991dc196d5845b892acedc63b8 | affected |
| Linux | Linux | 6.18 | affected |
| Linux | Linux | 0 < 6.18 | unaffected |
| Linux | Linux | 6.18.40 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.5 <= 7.1.* | unaffected |
| Linux | Linux | 7.2 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/83f29da85dc9d9a32fe62cd1055e8e6705e6bf80
- https://git.kernel.org/stable/c/9634db561e1594c151923f4950c012161c545c93
- https://git.kernel.org/stable/c/32b4d29280ed2a991dc196d5845b892acedc63b8
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.