CWE-333Variant

Improper Handling of Insufficient Entropy in TRNG

Draft in the CWE catalog · 1 CVE mapped

1
CVEs mapped
7.2
Median CVSS
What it is

True random number generators (TRNG) generally have a limited source of entropy and therefore can fail or block.

Recent examples
7.2cvss
CVE-2025-62626

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially…

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

HIGHno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-333
Abstraction
Variant
Structure
Simple
Status
Draft
References (1)