CVE-2026-80871 is a vulnerability in Linux Kernel
Published on September 4, 2026
crypto: xilinx-trng - Remove crypto_rng interface
In the Linux kernel, the following vulnerability has been resolved:
crypto: xilinx-trng - Remove crypto_rng interface
Implementing the crypto_rng interface has no purpose, as it isn't used
in practice. It's being removed from other drivers too. Just remove
it. This leaves hwrng, which is actually used.
Tagging with 'Cc stable' due to the bugs that this removes:
- xtrng_trng_generate() sometimes returned success even when it didn't
fill in all the bytes.
- It was possible for xtrng_trng_generate() and
xtrng_hwrng_trng_read() to run concurrently and interfere with each
other, as the locking code in xtrng_hwrng_trng_read() was broken.
Products Associated with CVE-2026-80871
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 8979744aca8096ee5072798dfc1181606919b35d and below 83f29da85dc9d9a32fe62cd1055e8e6705e6bf80 is affected.
- Version 8979744aca8096ee5072798dfc1181606919b35d and below 9634db561e1594c151923f4950c012161c545c93 is affected.
- Version 8979744aca8096ee5072798dfc1181606919b35d and below 32b4d29280ed2a991dc196d5845b892acedc63b8 is affected.
- Version 6.18 is affected.
- Before 6.18 is unaffected.
- Version 6.18.40, <= 6.18.* is unaffected.
- Version 7.1.5, <= 7.1.* is unaffected.
- Version 7.2, <= * is unaffected.