CVE-2025-62626

Published: November 5, 2025Last modified: November 5, 2025

Description

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

Notes

no fix at the moment, only a kernel-level workaround

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSlinux-firmwareUnknown (20221109-r0)
25 LTSlinux-firmwareVulnerable (20250509-r0)
Streamlinux-firmwareVulnerable (20230625-r0)

References

ON THIS PAGE