cbcvebase.
CVE-2025-40109
published 2025-11-09

CVE-2025-40109: In the Linux kernel, the following vulnerability has been resolved: crypto: rng - Ensure set_ent is always present Ensure that set_ent is always set since only…

PriorityP418high7.8
EPSS
0.21%
11.3th percentile
In the Linux kernel, the following vulnerability has been resolved: crypto: rng - Ensure set_ent is always present Ensure that set_ent is always set since only drbg provides it.

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < 15d6f42da1bb527629d8e1067b1302d58dec916615d6f42da1bb527629d8e1067b1302d58dec9166
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < bd903c25b652c331831226cdf56c8179d18e43f4bd903c25b652c331831226cdf56c8179d18e43f4
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < 17acbcd44fe8dc17dc1072375e76df2d52da6ac817acbcd44fe8dc17dc1072375e76df2d52da6ac8
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < ab172f4f42626549b02bada05f09e3f2b0cc26ecab172f4f42626549b02bada05f09e3f2b0cc26ec
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < c5c703b50e91dd4748769f4c5ab50d9ad60be370c5c703b50e91dd4748769f4c5ab50d9ad60be370
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < e247a7d138e514a40edda7c4d72c8bd49bb2cad3e247a7d138e514a40edda7c4d72c8bd49bb2cad3
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < 915cb75983bc5e8b80f8a2f25a4af463f7b18c14915cb75983bc5e8b80f8a2f25a4af463f7b18c14
linuxlinux>= 77ebdabe8de7c02f43c6de3357f79ff96f9f0579 < c0d36727bf39bb16ef0a67ed608e279535ebf0dac0d36727bf39bb16ef0a67ed608e279535ebf0da
linuxlinux_kernel>= 0 < 5.10.247-15.10.247-1
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 5.15.0-170.1805.15.0-170.180
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-7.76.17.0-7.7
linuxlinux_kernel>= 5.10.0 < 5.10.2465.10.246
linuxlinux_kernel>= 5.11.0 < 5.15.1955.15.195
linuxlinux_kernel>= 5.16.0 < 6.1.1566.1.156
linuxlinux_kernel>= 6.13.0 < 6.16.126.16.12
linuxlinux_kernel>= 6.17.0 < 6.17.26.17.2
linuxlinux_kernel>= 6.2.0 < 6.6.1116.6.111
linuxlinux_kernel>= 6.7.0 < 6.12.526.12.52

CVSS provenance

osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_redhat5.5MEDIUM
vendor_msrc4.2MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.