VDB

CVE-2026-80922

CVE-2026-80922 PUBLISHED

Reported by Linux · Published September 9, 2026

In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - Allow zero as a random number Zero is a valid random number and needs to be allowed. Otherwise the output is distinguishable from random.

EPSS 0.16% · 5.2th percentile

Risk Scores

EPSS Score
0.16%
5.2th percentile

Affected Products

VendorProductVersions
LinuxLinuxf29cd5bb64c258f29b4c49452532481f50eb43ca, f29cd5bb64c258f29b4c49452532481f50eb43ca, f29cd5bb64c258f29b4c49452532481f50eb43ca
LinuxLinux6.7, 0, 6.12.108
LinuxLinux7.3-rc1, 0, 6.12.108
linuxlinux_kernel6.7, 6.7, 6.7

Timeline

  • Sep 9, 2026 Coalition ESS Score
  • Sep 9, 2026 CVE Published
  • Sep 10, 2026 EPSS Score
  • Sep 18, 2026 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›