CVE-2026-80871

Source
https://cve.org/CVERecord?id=CVE-2026-80871
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80871.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80871
Downstream
Published
2026-09-04T16:48:34Z
Modified
2026-09-06T03:46:56Z
Summary
crypto: xilinx-trng - Remove crypto_rng interface
Details

In the Linux kernel, the following vulnerability has been resolved:

crypto: xilinx-trng - Remove crypto_rng interface

Implementing the crypto_rng interface has no purpose, as it isn't used in practice. It's being removed from other drivers too. Just remove it. This leaves hwrng, which is actually used.

Tagging with 'Cc stable' due to the bugs that this removes:

  • xtrng_trng_generate() sometimes returned success even when it didn't fill in all the bytes.

  • It was possible for xtrng_trng_generate() and xtrng_hwrng_trng_read() to run concurrently and interfere with each other, as the locking code in xtrng_hwrng_trng_read() was broken.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80871.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8979744aca8096ee5072798dfc1181606919b35d
Fixed
83f29da85dc9d9a32fe62cd1055e8e6705e6bf80
Fixed
9634db561e1594c151923f4950c012161c545c93
Fixed
32b4d29280ed2a991dc196d5845b892acedc63b8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80871.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.18.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80871.json"