Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: crypto: xilinx-trng - Remove crypto_rng interface Implementing the crypto_rng interface has no purpose, as it isn't used in practice. It's being removed from other drivers too. Just remove it. This leaves hwrng, which is actually used. Tagging with 'Cc stable' due to the bugs that this removes: - xtrng_trng_generate() sometimes returned success even when it didn't fill in all the bytes. - It was possible for xtrng_trng_generate() and xtrng_hwrng_trng_read() to run concurrently and interfere with each other, as the locking code in xtrng_hwrng_trng_read() was broken.
References
- https://git.kernel.org/stable/c/32b4d29280ed2a991dc196d5845b892acedc63b8
- https://git.kernel.org/stable/c/83f29da85dc9d9a32fe62cd1055e8e6705e6bf80
- https://git.kernel.org/stable/c/9634db561e1594c151923f4950c012161c545c93
FAQ
What is CVE-2026-80871?
CVE-2026-80871 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: crypto: xilinx-trng - Remove crypto_rng interface Implementing the crypto_rng interface has no purpose, as it isn't used in practi...
How severe is CVE-2026-80871?
CVSS scoring is not yet available for CVE-2026-80871. Check NVD for updates.
Is there a patch for CVE-2026-80871?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.