CVE-2026-31431
EUVD-2026-2463922.04.2026, 09:16
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 4.14 ≤ 𝑥 < 5.10.254 |
| linux | linux_kernel | 5.11 ≤ 𝑥 < 5.15.204 |
| linux | linux_kernel | 5.16 ≤ 𝑥 < 6.1.170 |
| linux | linux_kernel | 6.2 ≤ 𝑥 < 6.6.137 |
| linux | linux_kernel | 6.7 ≤ 𝑥 < 6.12.85 |
| linux | linux_kernel | 6.13 ≤ 𝑥 < 6.18.22 |
| linux | linux_kernel | 6.19 ≤ 𝑥 < 6.19.12 |
| linux | linux_kernel | 7.0:rc1 |
| linux | linux_kernel | 7.0:rc2 |
| linux | linux_kernel | 7.0:rc3 |
| linux | linux_kernel | 7.0:rc4 |
| linux | linux_kernel | 7.0:rc5 |
| linux | linux_kernel | 7.0:rc6 |
| redhat | openshift_container_platform | 4.12 ≤ 𝑥 < 4.12.89 |
| redhat | openshift_container_platform | 4.13 ≤ 𝑥 < 4.13.66 |
| redhat | openshift_container_platform | 4.14 ≤ 𝑥 < 4.14.65 |
| redhat | openshift_container_platform | 4.15 ≤ 𝑥 < 4.15.64 |
| redhat | openshift_container_platform | 4.16 ≤ 𝑥 < 4.16.61 |
| redhat | openshift_container_platform | 4.17 ≤ 𝑥 < 4.17.53 |
| redhat | openshift_container_platform | 4.18 ≤ 𝑥 < 4.18.40 |
| redhat | openshift_container_platform | 4.19 ≤ 𝑥 < 4.19.30 |
| redhat | openshift_container_platform | 4.20 ≤ 𝑥 < 4.20.21 |
| redhat | openshift_container_platform | 4.21 ≤ 𝑥 < 4.21.14 |
| redhat | openshift_container_platform | 4.0 |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux | 9.0 |
| redhat | enterprise_linux | 10.0 |
| redhat | enterprise_linux_aus | 8.4 |
| redhat | enterprise_linux_aus | 8.6 |
| redhat | enterprise_linux_eus | 8.4 |
| redhat | enterprise_linux_eus | 9.4 |
| redhat | enterprise_linux_eus | 9.6 |
| redhat | enterprise_linux_eus | 10.0 |
| redhat | enterprise_linux_tus | 8.6 |
| redhat | enterprise_linux_tus | 8.8 |
| redhat | enterprise_linux_update_services_for_sap_solutions | 8.6 |
| redhat | enterprise_linux_update_services_for_sap_solutions | 8.8 |
| redhat | enterprise_linux_update_services_for_sap_solutions | 9.0 |
| redhat | enterprise_linux_update_services_for_sap_solutions | 9.2 |
| amazon | amazon_linux | - |
| canonical | ubuntu_linux | - |
| debian | debian_linux | 11.0 |
| debian | debian_linux | 12.0 |
| debian | debian_linux | 13.0 |
| opensuse | leap | 15.3 |
| opensuse | leap | 15.4 |
| opensuse | leap | 15.5 |
| opensuse | leap | 15.6 |
| suse | caas_platform | 4.0 |
| suse | enterprise_storage | 6.0 |
| suse | enterprise_storage | 7.0 |
| suse | enterprise_storage | 7.1 |
| suse | manager_proxy | 4.0 |
| suse | manager_proxy | 4.1 |
| suse | manager_proxy | 4.2 |
| suse | manager_proxy | 4.3 |
| suse | manager_retail_branch_server | 4.0 |
| suse | manager_retail_branch_server | 4.1 |
| suse | manager_retail_branch_server | 4.2 |
| suse | manager_retail_branch_server | 4.3 |
| suse | manager_server | 4.0 |
| suse | manager_server | 4.1 |
| suse | manager_server | 4.2 |
| suse | manager_server | 4.3 |
| suse | openstack_cloud | 9.0 |
| suse | openstack_cloud_crowbar | 9.0 |
| suse | linux_enterprise_high_availability_extension | 16.0 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp1 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp1 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp1 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp2 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp2 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp2 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp3 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp3 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp3 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp4 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp4 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp4 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp5 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp5 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp5 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp6 |
| suse | linux_enterprise_high_performance_computing | 15.0:sp7 |
| suse | linux_enterprise_micro | 5.0 |
| suse | linux_enterprise_micro | 5.1 |
| suse | linux_enterprise_micro | 5.2 |
| suse | linux_enterprise_micro | 5.2 |
| suse | linux_enterprise_micro | 5.3 |
| suse | linux_enterprise_micro | 5.3 |
| suse | linux_enterprise_micro | 5.4 |
| suse | linux_enterprise_micro | 5.4 |
| suse | linux_enterprise_micro | 5.5 |
| suse | linux_enterprise_real_time | 15.0:sp2 |
| suse | linux_enterprise_real_time | 15.0:sp3 |
| suse | linux_enterprise_real_time | 15.0:sp4 |
| suse | linux_enterprise_real_time | 15.0:sp5 |
| suse | linux_enterprise_real_time | 15.0:sp6 |
| suse | linux_enterprise_real_time | 15.0:sp7 |
| suse | linux_enterprise_server | 16.0 |
| suse | linux_enterprise_server | 16.0 |
| suse | linux_enterprise_server | 16.1 |
| suse | linux_enterprise_server | 16.1 |
| suse | linux_micro | 6.0 |
| suse | linux_micro | 6.1 |
| suse | linux_micro | 6.2 |
| nixos | nixos | 𝑥 < 25.11 |
| arista | cloudvision_agni | 2024.4.0 ≤ 𝑥 ≤ 2025.2.2 |
| arista | cloudvision_portal | 2024.2.0 ≤ 𝑥 ≤ 2026.1.0 |
| arista | velocloud_edge | 4.5.0 ≤ 𝑥 ≤ 6.4.1 |
| arista | velocloud_gateway | - |
| vmware | velocloud_orchestrator | - |
| arista | netvisor_os | 𝑥 < 7.1.0 |
| arista | netvisor_os | 7.1.0 |
| arista | netvisor_os | 7.1.0:hotfix7 |
| siemens | simatic_s7-1500_cpu_1518-4_pn/dp_mfp_firmware | 3.1.5 ≤ |
| siemens | simatic_s7-1500_cpu_1518f-4_pn/dp_mfp_firmware | 3.1.5 ≤ |
| siemens | siplus_s7-1500_cpu_1518-4_pn/dp_mfp_firmware | 3.1.5 ≤ |
| siemens | simatic_s7-1500_tm_mfp_firmware | 𝑥 < 1.1 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 20.04 |
| canonical | ubuntu_linux | 22.04 |
| canonical | ubuntu_linux | 24.04 |
| canonical | ubuntu_linux | 25.10 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | V3.1.6 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | V3.1.6 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518-4 PN/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | V3.1.6 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | V3.1.6 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Siemens | SIMATIC S7-1500 TM MFP - GNU/Linux subsystem | 𝑥 < * | ADP |
| Siemens | SIPLUS S7-1500 CPU 1518-4 PN/DP MFP | V3.1.6 ≤ 𝑥 < * | ADP |
| Siemens | SIPLUS S7-1500 CPU 1518-4 PN/DP MFP | V3.1.5 ≤ 𝑥 < * | ADP |
| Red Hat | NVIDIA for RHEL 10 | 0:6.12.0-211.6.el10nv ≤ 𝑥 < * | ADP |
| Red Hat | NVIDIA for RHEL 10 | 0:6.12.0-231.12.el10nv ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 10 | 0:6.12.0-124.55.1.el10_1 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 10 | 0:6.12.0-211.7.3.el10_2 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 10.0 Extended Update Support | 0:6.12.0-55.71.1.el10_0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8 | 0:4.18.0-553.123.1.rt7.464.el8_10 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8 | 0:4.18.0-553.123.1.el8_10 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | 0:4.18.0-305.190.1.el8_4 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | 0:4.18.0-305.190.1.el8_4 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | 0:4.18.0-372.191.1.el8_6 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.6 Telecommunications Update Service | 0:4.18.0-372.191.1.el8_6 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | 0:4.18.0-372.191.1.el8_6 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.8 Telecommunications Update Service | 0:4.18.0-477.139.1.el8_8 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | 0:4.18.0-477.139.1.el8_8 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9 | 0:5.14.0-611.54.1.el9_7 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9 | 0:5.14.0-687.5.3.el9_8 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | 0:5.14.0-70.178.1.el9_0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | 0:5.14.0-70.178.1.rt21.250.el9_0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | 0:5.14.0-284.169.1.el9_2 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | 0:5.14.0-284.169.1.rt14.454.el9_2 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.4 Extended Update Support | 0:5.14.0-427.124.1.el9_4 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat Enterprise Linux 9.6 Extended Update Support | 0:5.14.0-570.112.1.el9_6 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.12 | 412.86.202605060316-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.13 | 413.92.202605051442-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.14 | 414.92.202605060243-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.15 | 415.92.202605060220-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.16 | 416.94.202605042300-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.17 | 417.94.202605050021-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.18 | 418.94.202605042017-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.19 | 4.19.9.6.202605042214-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.20 | 4.20.9.6.202605051409-0 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift Container Platform 4.21 | 4.21.9.6.202605051105-0 ≤ 𝑥 < * | ADP |
Debian Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cluster-md-kmp-default |
| ||||||||||||||
| dlm-kmp-default |
| ||||||||||||||
| gfs2-kmp-default |
| ||||||||||||||
| kernel-64kb |
| ||||||||||||||
| kernel-default |
| ||||||||||||||
| kernel-default-base |
| ||||||||||||||
| kernel-default-man |
| ||||||||||||||
| kernel-obs-build |
| ||||||||||||||
| kernel-source |
| ||||||||||||||
| kernel-zfcpdump |
| ||||||||||||||
| ocfs2-kmp-default |
| ||||||||||||||
| reiserfs-kmp-default |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| bpftool |
| ||||||||||||||||
| kernel |
| ||||||||||||||||
| kernel-64k |
| ||||||||||||||||
| kernel-64k-core |
| ||||||||||||||||
| kernel-64k-debug |
| ||||||||||||||||
| kernel-64k-debug-core |
| ||||||||||||||||
| kernel-64k-debug-devel |
| ||||||||||||||||
| kernel-64k-debug-devel-matched |
| ||||||||||||||||
| kernel-64k-debug-modules |
| ||||||||||||||||
| kernel-64k-debug-modules-core |
| ||||||||||||||||
| kernel-64k-debug-modules-extra |
| ||||||||||||||||
| kernel-64k-devel |
| ||||||||||||||||
| kernel-64k-devel-matched |
| ||||||||||||||||
| kernel-64k-modules |
| ||||||||||||||||
| kernel-64k-modules-core |
| ||||||||||||||||
| kernel-64k-modules-extra |
| ||||||||||||||||
| kernel-abi-stablelists |
| ||||||||||||||||
| kernel-core |
| ||||||||||||||||
| kernel-debug |
| ||||||||||||||||
| kernel-debug-core |
| ||||||||||||||||
| kernel-debug-devel |
| ||||||||||||||||
| kernel-debug-devel-matched |
| ||||||||||||||||
| kernel-debug-modules |
| ||||||||||||||||
| kernel-debug-modules-core |
| ||||||||||||||||
| kernel-debug-modules-extra |
| ||||||||||||||||
| kernel-debug-uki-virt |
| ||||||||||||||||
| kernel-devel |
| ||||||||||||||||
| kernel-devel-matched |
| ||||||||||||||||
| kernel-doc |
| ||||||||||||||||
| kernel-modules |
| ||||||||||||||||
| kernel-modules-core |
| ||||||||||||||||
| kernel-modules-extra |
| ||||||||||||||||
| kernel-rt |
| ||||||||||||||||
| kernel-rt-64k |
| ||||||||||||||||
| kernel-rt-64k-core |
| ||||||||||||||||
| kernel-rt-64k-debug |
| ||||||||||||||||
| kernel-rt-64k-debug-core |
| ||||||||||||||||
| kernel-rt-64k-debug-devel |
| ||||||||||||||||
| kernel-rt-64k-debug-modules |
| ||||||||||||||||
| kernel-rt-64k-debug-modules-core |
| ||||||||||||||||
| kernel-rt-64k-debug-modules-extra |
| ||||||||||||||||
| kernel-rt-64k-devel |
| ||||||||||||||||
| kernel-rt-64k-modules |
| ||||||||||||||||
| kernel-rt-64k-modules-core |
| ||||||||||||||||
| kernel-rt-64k-modules-extra |
| ||||||||||||||||
| kernel-rt-core |
| ||||||||||||||||
| kernel-rt-debug |
| ||||||||||||||||
| kernel-rt-debug-core |
| ||||||||||||||||
| kernel-rt-debug-devel |
| ||||||||||||||||
| kernel-rt-debug-kvm |
| ||||||||||||||||
| kernel-rt-debug-modules |
| ||||||||||||||||
| kernel-rt-debug-modules-core |
| ||||||||||||||||
| kernel-rt-debug-modules-extra |
| ||||||||||||||||
| kernel-rt-devel |
| ||||||||||||||||
| kernel-rt-kvm |
| ||||||||||||||||
| kernel-rt-modules |
| ||||||||||||||||
| kernel-rt-modules-core |
| ||||||||||||||||
| kernel-rt-modules-extra |
| ||||||||||||||||
| kernel-tools |
| ||||||||||||||||
| kernel-tools-libs |
| ||||||||||||||||
| kernel-tools-libs-devel |
| ||||||||||||||||
| kernel-uki-virt |
| ||||||||||||||||
| kernel-uki-virt-addons |
| ||||||||||||||||
| kernel-zfcpdump |
| ||||||||||||||||
| kernel-zfcpdump-core |
| ||||||||||||||||
| kernel-zfcpdump-devel |
| ||||||||||||||||
| kernel-zfcpdump-devel-matched |
| ||||||||||||||||
| kernel-zfcpdump-modules |
| ||||||||||||||||
| kernel-zfcpdump-modules-core |
| ||||||||||||||||
| kernel-zfcpdump-modules-extra |
| ||||||||||||||||
| kpatch-patch-4 |
| ||||||||||||||||
| kpatch-patch-5 |
| ||||||||||||||||
| libperf |
| ||||||||||||||||
| perf |
| ||||||||||||||||
| python3-perf |
| ||||||||||||||||
| rtla |
| ||||||||||||||||
| rv |
|
Amazon Linux Releases
Amazon Package | |||||
|---|---|---|---|---|---|
| bpftool |
| ||||
| bpftool-debuginfo |
| ||||
| bpftool6.12 |
| ||||
| bpftool6.12-debuginfo |
| ||||
| bpftool6.18 |
| ||||
| bpftool6.18-debuginfo |
| ||||
| kernel |
| ||||
| kernel-debuginfo |
| ||||
| kernel-debuginfo-common-aarch64 |
| ||||
| kernel-debuginfo-common-x86_64 |
| ||||
| kernel-devel |
| ||||
| kernel-headers |
| ||||
| kernel-livepatch-4.14.355-281.727 |
| ||||
| kernel-livepatch-6.1.168-203.330 |
| ||||
| kernel-livepatch-6.12.80-106.156 |
| ||||
| kernel-livepatch-6.18.20-41.237 |
| ||||
| kernel-modules-extra |
| ||||
| kernel-modules-extra-common |
| ||||
| kernel-tools |
| ||||
| kernel-tools-debuginfo |
| ||||
| kernel-tools-devel |
| ||||
| kernel6.12 |
| ||||
| kernel6.12-debuginfo |
| ||||
| kernel6.12-debuginfo-common-aarch64 |
| ||||
| kernel6.12-debuginfo-common-x86_64 |
| ||||
| kernel6.12-devel |
| ||||
| kernel6.12-headers |
| ||||
| kernel6.12-modules-extra |
| ||||
| kernel6.12-modules-extra-common |
| ||||
| kernel6.12-tools |
| ||||
| kernel6.12-tools-debuginfo |
| ||||
| kernel6.12-tools-devel |
| ||||
| kernel6.18 |
| ||||
| kernel6.18-debuginfo |
| ||||
| kernel6.18-debuginfo-common-aarch64 |
| ||||
| kernel6.18-debuginfo-common-x86_64 |
| ||||
| kernel6.18-devel |
| ||||
| kernel6.18-headers |
| ||||
| kernel6.18-modules-extra |
| ||||
| kernel6.18-modules-extra-common |
| ||||
| kernel6.18-tools |
| ||||
| kernel6.18-tools-debuginfo |
| ||||
| kernel6.18-tools-devel |
| ||||
| perf |
| ||||
| perf-debuginfo |
| ||||
| perf6.12 |
| ||||
| perf6.12-debuginfo |
| ||||
| perf6.18 |
| ||||
| perf6.18-debuginfo |
| ||||
| python-perf |
| ||||
| python-perf-debuginfo |
| ||||
| python3-perf |
| ||||
| python3-perf-debuginfo |
| ||||
| python3-perf6.12 |
| ||||
| python3-perf6.12-debuginfo |
| ||||
| python3-perf6.18 |
| ||||
| python3-perf6.18-debuginfo |
|
Azure Linux Releases
Common Weakness Enumeration
- CWE-669 - Incorrect Resource Transfer Between SpheresThe product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.
- CWE-1288 - Improper Validation of Consistency within InputThe product receives a complex input with multiple elements or fields that must be consistent with each other, but it does not validate or incorrectly validates that the input is actually consistent.
References