---
cve: "CVE-2026-31431"
severity: "HIGH"
cvss: 7.8
epss: "99.9%"
vendor: "Linux"
kev: true
exploited: true
published: "2026-04-22 09:16:21"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-04T13:59:55+02:00"
---

# CVE-2026-31431

> 7.8 HIGH · ⚠️ CISA KEV (126 Tage) · 🔓 Exploited

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

crypto: algif_aead - Revert to operating out-of-place

This mostly reverts commit 72548b093ee3 except for the copying of
the associated data.

There is no benefit in operating in-place in algif_aead since the
source and destination come from different mappings.  Get rid of
all the complexity added for in-place operation and just copy the
AD directly.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.254
- Kernel ≥ 5.15.204
- Kernel ≥ 6.1.170
- Kernel ≥ 6.6.137
- Kernel ≥ 6.12.85
- Kernel ≥ 6.18.22
- Kernel ≥ 6.19.12

## Referenzen

- <https://git.kernel.org/stable/c/893d22e0135fa394db81df88697fba6032747667>
- <https://git.kernel.org/stable/c/19d43105a97be0810edbda875f2cd03f30dc130c>
- <https://git.kernel.org/stable/c/961cfa271a918ad4ae452420e7c303149002875b>
- <https://git.kernel.org/stable/c/3115af9644c342b356f3f07a4dd1c8905cd9a6fc>
- <https://git.kernel.org/stable/c/8b88d99341f139e23bdeb1027a2a3ae10d341d82>
- <https://git.kernel.org/stable/c/fafe0fa2995a0f7073c1c358d7d3145bcc9aedd8>
- <https://git.kernel.org/stable/c/ce42ee423e58dffa5ec03524054c9d8bfd4f6237>
- <https://git.kernel.org/stable/c/a664bf3d603dc3bdcf9ae47cc21e0daec706d7a5>
- <http://www.openwall.com/lists/oss-security/2026/04/29/23>
- <http://www.openwall.com/lists/oss-security/2026/04/29/25>
- <http://www.openwall.com/lists/oss-security/2026/04/29/26>
- <http://www.openwall.com/lists/oss-security/2026/04/30/10>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-31431) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
