chiprook
← Security
SecurityOctober 5, 2026, 13:40

CVE-2026-31431: 732-byte exploit grants root on Linux

The Copy Fail flaw (CVE-2026-31431) in the Linux kernel's algif_aead module lets a local attacker escalate to root via a four-byte write into the page cache through AF_ALG. CVSS is 7.8 and the reference exploit is 732 bytes. Kernels below 6.18.22, 6.19.12 and 7.0 are affected.

CVE-2026-31431: 732-byte exploit grants root on Linux
#Linux
Read next
Security

CVE-2026-76461: SQL injection in Cisco email gateway grants root

Security

CVE-2026-31431 "Copy Fail": Linux algif_aead privilege escalation explained

Security

CISA Adds Linux Kernel CVE-2026-53266 to Known Exploited Vulnerabilities Catalog

Security

Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root