CVE-2026-74438
Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
15/08/2026
Última modificación:
15/08/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
crypto: sun4i-ss - Remove insecure and unused rng_alg<br />
<br />
Remove sun4i_ss_rng, as it is insecure and unused:<br />
<br />
- It has multiple vulnerabilities. sun4i_ss_prng_seed() is missing<br />
locking and has a buffer overflow. sun4i_ss_prng_generate() fails to<br />
fill the entire buffer with cryptographic random bytes, because it<br />
rounds the destination length down and also doesn&#39;t actually wait for<br />
the hardware to be ready before pulling bytes from it.<br />
<br />
- No user of this code is known. It&#39;s usable only theoretically via the<br />
"rng" algorithm type of AF_ALG. But userspace actually just uses the<br />
actual Linux RNG (/dev/random etc) instead. And rng_algs don&#39;t<br />
contribute entropy to the actual Linux RNG either. (This may have<br />
been confused with hwrng, which does contribute entropy.)<br />
<br />
The sun4i_ss_prng_seed() buffer overflow was reported by Tianchu Chen<br />
and discovered by Atuin - Automated Vulnerability Discovery Engine<br />
<br />
There&#39;s no point in fixing all these vulnerabilities individually when<br />
this is unused code, so let&#39;s just remove it.
Impacto
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/2eafecaba1b46bb9774eaf3556619fd5b6a17c1c
- https://git.kernel.org/stable/c/306ded31bfa00a69d25823a60d7c797170bfb4f8
- https://git.kernel.org/stable/c/9c8086d9511189c34dfa3f9e3a03f2bee12f56a5
- https://git.kernel.org/stable/c/b2c41fa9dd8fc740c489e060b199165771f268d1
- https://git.kernel.org/stable/c/c401492e01c7bfd38cf14c94d85c7efafe7d1a25
- https://git.kernel.org/stable/c/e4b7b9819811c4c51064c3d3d3c02f0be7491707
- https://git.kernel.org/stable/c/ee2458f8188732aa53a5d42f56e87bfad288b44e



