CVE-2026-80922: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - Allow zero as a random number Zero is a valid random number and needs to be allowed. Otherwise the output is distinguishable from random.
Affected products
- Linux Linux: from 6.7, before 6.12.108 (fixed in 6.12.108); from 6.13, before 6.18.49 (fixed in 6.18.49); from 6.19, before 7.1.13 (fixed in 7.1.13); from 7.2, before 7.2.3 (fixed in 7.2.3)
Published 2026-09-09. Last modified 2026-09-09.