CVE-2026-31431
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.
- Published Apr 22, 2026
- CVSS 7.8 high
- 3.4% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
- A Metasploit module exploits it
- A fix is available
Affected software
In the news
- Siemens SIPLUS and SIMATIC Products CISA ·
- ABB Ability Edgenius CISA ·
- Exploits and vulnerabilities in Q2 2026 Securelist ·
- Copy Fail and Its Descendants: A Real Human's Guide to Kernel Page-Cache LPEs VulnCheck Blog ·
- Quantifying 2026 Routinely Targeted Vulnerabilities (So Far) VulnCheck Blog ·
- Ongoing updates on Copy.fail and variants AWS Security Bulletins ·
- Fragnesia Local Privilege Escalation report via ESP-in-TCP in the Linux Kernel AWS Security Bulletins ·
- Dirty Frag and other issues in Amazon Linux kernels AWS Security Bulletins ·
- CVE-2026-31431 AWS Security Bulletins ·
- Cryptographic Subsystem Privilege Escalation - Linux Kernel - Copy Fail Red Hat Security Bulletins ·