VYPR
Medium severity5.5NVD Advisory· Published Jun 24, 2026· Updated Jul 8, 2026

CVE-2026-52936

CVE-2026-52936

Description

In the Linux kernel, the following vulnerability has been resolved:

crypto: jitterentropy - replace long-held spinlock with mutex

jent_kcapi_random() serializes the shared jitterentropy state, but it currently holds a spinlock across the jent_read_entropy() call. That path performs expensive jitter collection and SHA3 conditioning, so parallel readers can trigger stalls as contending waiters spin for the same lock.

To prevent non-preemptible lock hold, replace rng->jent_lock with a mutex so contended readers sleep instead of spinning on a shared lock held across expensive entropy generation.

Affected products

16

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.