Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-62626

Опубликовано: 21 нояб. 2025
Источник: debian
EPSS Низкий

Описание

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
amd64-microcodefixed3.20251202.1package
amd64-microcodeignoredtrixiepackage
amd64-microcodeignoredbookwormpackage

Примечания

  • https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html

  • Workaround in Linux kernel by diabling RDSEED on AMD Zen 5 Turin:

  • https://lore.kernel.org/lkml/20251016182107.3496116-1-gourry@gourry.net/

  • https://gitlab.com/kernel-firmware/linux-firmware/-/commit/e637542fa8b9e0a88b0b2885072eea7df3737969

  • https://gitlab.com/kernel-firmware/linux-firmware/-/commit/646d97f5320d0f9038be6c5b9927305cafb0c1d7

  • Mitigations on Linux side: https://bugs.debian.org/1120972

EPSS

Процентиль: 5%
0.00021
Низкий

Связанные уязвимости

ubuntu
3 месяца назад

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

nvd
3 месяца назад

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

github
3 месяца назад

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

oracle-oval
3 месяца назад

ELSA-2025-25745: linux-firmware security update (MODERATE)

oracle-oval
3 месяца назад

ELSA-2025-25744: linux-firmware security update (MODERATE)

EPSS

Процентиль: 5%
0.00021
Низкий