DigiNews

Tech Watch by Johan Denoyer

← Back to articles

CVE-2026-31431 (Copy Fail): Linux kernel LPE via algif_aead page-cache scratch-write

Quality: 8/10 Relevance: 9/10

Summary

The article documents CVE-2026-31431, a Linux kernel local privilege escalation related to in-place AEAD operations in the algif_aead path. It provides detector and PoC Python scripts, outlines affected distributions, and offers mitigations such as disabling the algif_aead module until patches are available.

🚀 Service construit par Johan Denoyer