CVE-2026-31431
HIGH CISA KEVDescription
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
CISA Known Exploited Vulnerability
This vulnerability is actively exploited in the wild.
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| linux | linux_kernel |
| redhat | openshift_container_platform |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| redhat | enterprise_linux |
| amazon | amazon_linux |
| canonical | ubuntu_linux |
| debian | debian_linux |
| debian | debian_linux |
| debian | debian_linux |
| opensuse | leap |
| opensuse | leap |
| opensuse | leap |
| opensuse | leap |
| suse | caas_platform |
| suse | enterprise_storage |
| suse | enterprise_storage |
| suse | enterprise_storage |
| suse | manager_proxy |
| suse | manager_proxy |
| suse | manager_proxy |
| suse | manager_proxy |
| suse | manager_retail_branch_server |
| suse | manager_retail_branch_server |
| suse | manager_retail_branch_server |
| suse | manager_retail_branch_server |
| suse | manager_server |
| suse | manager_server |
| suse | manager_server |
| suse | manager_server |
| suse | openstack_cloud |
| suse | openstack_cloud_crowbar |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | basesystem_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | development_tools_module |
| suse | legacy_module |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_desktop |
| suse | linux_enterprise_high_availability_extension |
| suse | linux_enterprise_high_availability_extension |
| suse | linux_enterprise_high_availability_extension |
| suse | linux_enterprise_high_availability_extension |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_high_performance_computing |
| suse | linux_enterprise_live_patching |
| suse | linux_enterprise_live_patching |
| suse | linux_enterprise_live_patching |
| suse | linux_enterprise_live_patching |
| suse | linux_enterprise_live_patching |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_micro |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_real_time |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_server |
| suse | linux_enterprise_workstation_extension |
| suse | linux_micro |
| suse | linux_micro |
| suse | linux_micro |
| suse | public_cloud_module |
| suse | public_cloud_module |
| suse | realtime_module |
| suse | realtime_module |
| suse | realtime_module |
| suse | realtime_module |
| suse | realtime_module |
| nixos | nixos |
| arista | cloudvision_agni |
| arista | cloudvision_portal |
| arista | velocloud_edge |
| arista | velocloud_gateway |
| vmware | velocloud_orchestrator |
| arista | netvisor_os |
| arista | netvisor_os |
| arista | netvisor_os |
| siemens | simatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware |
| siemens | simatic_s7-1500_cpu_1518-4_pn\/dp_mfp |
| siemens | simatic_s7-1500_cpu_1518f-4_pn\/dp_mfp_firmware |
| siemens | simatic_s7-1500_cpu_1518f-4_pn\/dp_mfp |
| siemens | siplus_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware |
| siemens | siplus_s7-1500_cpu_1518-4_pn\/dp_mfp |
| siemens | simatic_s7-1500_tm_mfp_firmware |
| siemens | simatic_s7-1500_tm_mfp |
References
Advisories & Patches
Exploits
Other References
Frequently Asked Questions
What is CVE-2026-31431? +
How severe is CVE-2026-31431? +
What products are affected by CVE-2026-31431? +
How do I check if I'm vulnerable to CVE-2026-31431? +
Related Vulnerabilities
mpGabinet is vulnerable to Remote Command Execution. An authorized user with access to the application and direct access to the …
Wine ships a .desktop file that registers itself as a MIME handler for EXE files and several other Windows executable …
Edge3 Worker RPC RCE on Airflow 2. This issue affects Apache Airflow Providers Edge3: before 2.0.0 - and only if …
An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that …
Plex Media Server (PMS) 1.41.7.x through 1.42.0.x before 1.42.1 is affected by incorrect resource transfer between spheres because /myplex/account provides …
Mercku M6a devices through 2.1.0 allow root TELNET logins via the web admin password.