CVE-2026-31677

EUVD-2026-25644
In the Linux kernel, the following vulnerability has been resolved:

crypto: af_alg - limit RX SG extraction by receive buffer budget

Make af_alg_get_rsgl() limit each RX scatterlist extraction to the
remaining receive buffer budget.

af_alg_get_rsgl() currently uses af_alg_readable() only as a gate
before extracting data into the RX scatterlist. Limit each extraction
to the remaining af_alg_rcvbuf(sk) budget so that receive-side
accounting matches the amount of data attached to the request.

If skcipher cannot obtain enough RX space for at least one chunk while
more data remains to be processed, reject the recvmsg call instead of
rounding the request length down to zero.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 3%
Affected Products (NVD)
VendorProductVersion
linuxlinux_kernel
4.14 ≤
𝑥
< 6.12.83
linuxlinux_kernel
6.13 ≤
𝑥
< 6.18.24
linuxlinux_kernel
6.19 ≤
𝑥
< 6.19.14
linuxlinux_kernel
7.0:rc1
linuxlinux_kernel
7.0:rc2
linuxlinux_kernel
7.0:rc3
linuxlinux_kernel
7.0:rc4
linuxlinux_kernel
7.0:rc5
linuxlinux_kernel
7.0:rc6
linuxlinux_kernel
7.0:rc7
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
linux
bookworm
vulnerable
bookworm (security)
vulnerable
bullseye
vulnerable
bullseye (security)
vulnerable
forky
7.0.10-1
fixed
sid
7.0.10-1
fixed
trixie
6.12.86-1
fixed
trixie (security)
6.12.90-2
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
kernel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-devel-matched
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-debug-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-devel-matched
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-64k-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-abi-stablelists
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-devel-matched
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-debug-uki-virt
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-devel-matched
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-doc
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-debug-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-64k-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-debug-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-rt-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-tools
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-tools-libs
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-tools-libs-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-uki-virt
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-uki-virt-addons
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-devel
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-devel-matched
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-modules
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-modules-core
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
kernel-zfcpdump-modules-extra
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
libperf
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
perf
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
python3-perf
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
rtla
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
rv
RHEL 9
0:5.14.0-687.5.3.el9_8
fixed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
bpftool6.12
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
bpftool6.12-debuginfo
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
bpftool6.18
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
bpftool6.18-debuginfo
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel-livepatch-6.12.83-113.160
Amazon Linux 2023
1:1.0-0.amzn2023
fixed
kernel-livepatch-6.18.20-41.237
Amazon Linux 2023
1:1.0-0.amzn2023
fixed
kernel6.12
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-debuginfo
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-debuginfo-common-aarch64
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-debuginfo-common-x86_64
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-devel
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-headers
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-modules-extra
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-modules-extra-common
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-tools
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-tools-debuginfo
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.12-tools-devel
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
kernel6.18
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-debuginfo
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-debuginfo-common-aarch64
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-debuginfo-common-x86_64
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-devel
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-headers
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-modules-extra
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-modules-extra-common
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-tools
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-tools-debuginfo
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
kernel6.18-tools-devel
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
perf6.12
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
perf6.12-debuginfo
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
perf6.18
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
perf6.18-debuginfo
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
python3-perf6.12
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
python3-perf6.12-debuginfo
Amazon Linux 2023
1:6.12.83-113.160.amzn2023
fixed
python3-perf6.18
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed
python3-perf6.18-debuginfo
Amazon Linux 2023
1:6.18.20-41.237.amzn2023
fixed