Out-of-bounds read in Linux kernel - CVE-2026-80833
Published: September 5, 2026
Vulnerability details
The vulnerability allows a local user to read out-of-bounds memory.
The vulnerability exists due to an out-of-bounds read in the sun8i-ss PRNG generate function when updating the PRNG seed after generating random data. A local user can invoke the PRNG generate function to read out-of-bounds memory.
The issue is limited to systems with sun8i-ss PRNG support enabled.