cbcvebase.
CVE-2026-31436
published 2026-04-22

CVE-2026-31436: In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc() At the end…

PriorityP349critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.46%
37.3th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc() At the end of this function, d is the traversal cursor of flist, but the code completes found instead. This can lead to issues such as NULL pointer dereferences, double completion, or descriptor leaks. Fix this by completing d instead of found in the final list_for_each_entry_safe() loop.

Affected

46 ranges· showing 25
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= aa8d18becc0c14aa3eb46d6d1b81450446e11b87 < e21da2ad8844585040fe4b82be1ad2fe99d40074e21da2ad8844585040fe4b82be1ad2fe99d40074
linuxlinux>= aa8d18becc0c14aa3eb46d6d1b81450446e11b87 < 82656e8daf8de00935ae91b91bed43f4d6e0d64482656e8daf8de00935ae91b91bed43f4d6e0d644
linuxlinux>= aa8d18becc0c14aa3eb46d6d1b81450446e11b87 < 0e4f43779d550e559be13a5cdb763bad92c4cc990e4f43779d550e559be13a5cdb763bad92c4cc99
linuxlinux>= aa8d18becc0c14aa3eb46d6d1b81450446e11b87 < e1c9866173c5f8521f2d0768547a01508cb9ff27e1c9866173c5f8521f2d0768547a01508cb9ff27
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 6.13 < 6.18.216.18.21
linuxlinux_kernel>= 6.19 < 6.19.116.19.11
linuxlinux_kernel>= 6.8 < 6.12.806.12.80
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-6.8
ubuntulinux-aws-fips
ubuntulinux-azure
ubuntulinux-azure-6.17
ubuntulinux-azure-6.8
ubuntulinux-azure-fde
ubuntulinux-azure-fde-6.17
ubuntulinux-azure-fde-6.8
ubuntulinux-azure-fips
ubuntulinux-fips
ubuntulinux-gcp
ubuntulinux-gcp-6.8
ubuntulinux-gcp-fips

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_ubuntu8.8HIGH
vendor_redhat7.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.