CVE-2026-31407Out-of-bounds Read in Linux

CWE-125Out-of-bounds Read1352 documents8 sources
Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 98.88%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 6

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: add missing netlink policy validations Hyunwoo Kim reports out-of-bounds access in sctp and ctnetlink. These attributes are used by the kernel without any validation. Extend the netlink policies accordingly. Quoting the reporter: nlattr_to_sctp() assigns the user-supplied CTA_PROTOINFO_SCTP_STATE value directly to ct->proto.sctp.state without checking that it is within the valid range. [..] and: ... wi

Affected Packages4 packages

Debianlinux/linux_kernel< 6.19.10-1
CVEListV5linux/linuxa258860e01b80e8f554a4ab1a6c95e6042eb8b730fbae1e74493d5a160a70c51aeba035d8266ea7d+2
debiandebian/linux< linux 6.19.10-1 (forky)

🔴Vulnerability Details

2
GHSA
GHSA-cf8w-8g67-48gv: In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: add missing netlink policy validations Hyunwoo Kim reports2026-04-06
OSV
CVE-2026-31407: In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: add missing netlink policy validations Hyunwoo Kim reports o2026-04-06

📋Vendor Advisories

3
Red Hat
kernel: netfilter: conntrack: add missing netlink policy validations2026-04-06
Microsoft
netfilter: conntrack: add missing netlink policy validations2026-04-02
Debian
CVE-2026-31407: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...2026

🕵️Threat Intelligence

1345
Wiz
CVE-2026-31389 Impact, Exploitability, and Mitigation Steps | Wiz
Wiz
CVE-2026-23120 Impact, Exploitability, and Mitigation Steps | Wiz
Wiz
CVE-2025-68319 Impact, Exploitability, and Mitigation Steps | Wiz
Wiz
CVE-2022-50834 Impact, Exploitability, and Mitigation Steps | Wiz
Wiz
CVE-2025-68307 Impact, Exploitability, and Mitigation Steps | Wiz

💬Community

1
Bugzilla
CVE-2026-31407 kernel: netfilter: conntrack: add missing netlink policy validations2026-04-06
CVE-2026-31407 — Out-of-bounds Read in Linux | cvebase