CVE 4.8 MEDIUM

Glibc: vdso getrandom acceleration may return predictable randomness_CVE-2025-0577

4.8 / 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N

Description

An insufficient entropy vulnerability was found in glibc. The getrandom and arc4random family of functions may return predictable randomness if these functions are called again after the fork, which happens concurrently with a call to any of these functions.

Basic Information

ID CVE-2025-0577
Source fedora
Published Feb 18, 2026 at 20:25

Affected Product

Version 2.40-12.fc41
Affected Versions 2.39-28.fc40
2.40-12.fc41

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.