CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-31431

KEV High · CVSS 7.8

Linux kernel crypto algif_aead — kernel local privilege escalation / improper resource transfer (out-of-place vs in-place crypto buffer operation)

CVSS
7.8
nvd
EPSS
94.5%
100th pct
KEV
Listed
2026-05-01
Class
oss containerizable
CWE-669, CWE-1288

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.

Search profile — drives PoC discovery

Symbols algif_aeadalgif_aead.c72548b093ee319d43105a97b3115af9644c3893d22e013598b88d9934133961cfa271a91aead_recvmsgaead_sendmsgaead_sg_to_dstaead_request_set_cryptsock_aeadaead_ctxassociated dataAF_ALG
Keywords CVE-2026-31431algif_aeadLinux kernel cryptoout-of-place aeadin-place aead revert72548b093ee3CWE-669CWE-1288algif aead bufferAF_ALG AEAD exploitkernel crypto socket aead poc
Versions: Linux kernel versions prior to stable commits: 19d43105a97b, 3115af9644c3, 893d22e01359, 8b88d9934133, 961cfa271a91

Ranked PoCs (90) — best first

Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.

Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.

Affected packages

Linux Kernel 4.14.0 → 5.10.254
Linux Kernel 5.11.0 → 5.15.204
Linux Kernel 5.16.0 → 6.1.170
Linux Kernel 6.13.0 → 6.18.22
Linux Kernel 6.19.0 → 6.19.12
Linux Kernel 6.2.0 → 6.6.137
Linux Kernel 6.7.0 → 6.12.85

References

Status: enriched · ingested 2026-06-30T06:00:22.000Z · profiled 2026-07-01T06:30:14.000Z