← Back to CVE search

CVE-2026-13199

Raspberry Pi

Description

EEPROM firmware on Raspberry Pi 5 and Compute Module 5 devices produced non-random KASLR and RNG seed values. This resulted in consistent kernel addresses across boots and devices, potentially making it easier to exploit other vulnerabilities. Additionally, the low-quality RNG seed may affect the quality of random numbers or delay booting while sufficient entropy is accumulated from other sources.

CVSS 4EPSS 0.11399999999999999%Risk 0.4
View source
Published
2026-07-07 09:16:29
Affected versions
unknown
Type
Firmware
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N