Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2026-465 Medium 6.7

Mbed TLS may use a low entropy PRNG seed

JLSEC Published
Modified
Severity
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected Packages
MbedTLS_jll *
Aliases / Upstream
CVE-2026-34871 GHSA-rjq9-c3rf-c638 EUVD-2026-18001

An issue was discovered in Mbed TLS before 3.6.6 and 4.x before 4.1.0 and TF-PSA-Crypto before 1.1.0. There is a Predictable Seed in a Pseudo-Random Number Generator (PRNG).

References