Predictable Seed Vulnerability in Mbed TLS from Arm
CVE-2026-34871

6.7MEDIUM

Key Information:

Vendor

Arm

Status
Vendor
CVE Published:
1 April 2026

What is CVE-2026-34871?

An issue has been identified in certain versions of Mbed TLS and TF-PSA-Crypto where the Pseudo-Random Number Generator (PRNG) utilizes a predictable seed. This flaw can potentially allow attackers to predict cryptographic keys generated using the compromised random number generator, posing a significant risk to the integrity and confidentiality of data. Users of the affected versions are urged to review the related security advisories and take appropriate measures to upgrade their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.