CVE-2026-80922 PUBLISHED

crypto: qcom-rng - Allow zero as a random number

Assigner: Linux
Reserved: 26.08.2026 Published: 09.09.2026 Updated: 09.09.2026

In the Linux kernel, the following vulnerability has been resolved:

crypto: qcom-rng - Allow zero as a random number

Zero is a valid random number and needs to be allowed. Otherwise the output is distinguishable from random.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from f29cd5bb64c258f29b4c49452532481f50eb43ca to 813e6718a199befc4f26f54bdd899fbfa11515e5 (excl.)
  • affected from f29cd5bb64c258f29b4c49452532481f50eb43ca to 4c0018320942003bfedd0a1c4cce3f036d363a7f (excl.)
  • affected from f29cd5bb64c258f29b4c49452532481f50eb43ca to 143c74034a1c47b0a1a64e7ca7153e7739bd1244 (excl.)
  • affected from f29cd5bb64c258f29b4c49452532481f50eb43ca to 3c7101cfc52e378bcb0a46962145e39c9051dd5d (excl.)
  • affected from f29cd5bb64c258f29b4c49452532481f50eb43ca to 4ef04bdc0c9f98836d1638be516f6bf1bad55f69 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.7 is affected
  • unaffected from 0 to 6.7 (excl.)
  • unaffected from 6.12.108 to 6.12.* (incl.)
  • unaffected from 6.18.49 to 6.18.* (incl.)
  • unaffected from 7.1.13 to 7.1.* (incl.)
  • unaffected from 7.2.3 to 7.2.* (incl.)
  • unaffected from 7.3-rc1 to * (incl.)

References