CVE-2026-31743
published 2026-05-01CVE-2026-31743: In the Linux kernel, the following vulnerability has been resolved: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy Buffer size used in dma allocation…
PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.13%
2.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
Buffer size used in dma allocation and memcpy is wrong.
It can lead to undersized DMA buffer access and possible
memory corruption. use correct buffer size in dma_alloc_coherent
and memcpy.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux | — | — |
| linux | linux | >= 737c0c8d07b5f671c0a33cec95965fcb2d2ea893 < 2f6e5b9964d0a63a5ba84fca2642876afb70a662 | 2f6e5b9964d0a63a5ba84fca2642876afb70a662 |
| linux | linux | >= 737c0c8d07b5f671c0a33cec95965fcb2d2ea893 < 784ed4abded1ca4b525fa4cade8b02f8c5d2a087 | 784ed4abded1ca4b525fa4cade8b02f8c5d2a087 |
| linux | linux | >= 737c0c8d07b5f671c0a33cec95965fcb2d2ea893 < 6c01e7f11f5e5f22285d19510a9643e2506e13c3 | 6c01e7f11f5e5f22285d19510a9643e2506e13c3 |
| linux | linux | >= 737c0c8d07b5f671c0a33cec95965fcb2d2ea893 < f9b88613ff402aa6fe8fd020573cb95867ae947e | f9b88613ff402aa6fe8fd020573cb95867ae947e |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 6.13 < 6.18.22 | 6.18.22 |
| linux | linux_kernel | >= 6.19 < 6.19.12 | 6.19.12 |
| linux | linux_kernel | >= 6.9 < 6.12.81 | 6.12.81 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Linux Kernel up to 6.12.80/6.18.21/6.19.11 nvmem zynqmp_nvmem memory corruption (Nessus ID 329305 / WID-SEC-2026-1346)
vuldb·2026-07-24·CVSS 7.8
CVE-2026-31743 [HIGH] Linux Kernel up to 6.12.80/6.18.21/6.19.11 nvmem zynqmp_nvmem memory corruption (Nessus ID 329305 / WID-SEC-2026-1346)
A vulnerability identified as critical has been detected in Linux Kernel up to 6.12.80/6.18.21/6.19.11. The affected element is the function zynqmp_nvmem of the component nvmem. Performing a manipulation results in memory corruption.
This vulnerability was named CVE-2026-31743. The attack needs to be approached within the local network. There is no available exploit.
You should upgrade the affected component.
GHSA
GHSA-8xxg-55q7-qggv: In the Linux kernel, the following vulnerability has been resolved:
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
Buffer size used in dma a
ghsa_unreviewed·2026-05-01
CVE-2026-31743 [HIGH] GHSA-8xxg-55q7-qggv: In the Linux kernel, the following vulnerability has been resolved:
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
Buffer size used in dma a
In the Linux kernel, the following vulnerability has been resolved:
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
Buffer size used in dma allocation and memcpy is wrong.
It can lead to undersized DMA buffer access and possible
memory corruption. use correct buffer size in dma_alloc_coherent
and memcpy.
Red Hat
kernel: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
vendor_redhat·2026-05-01
CVE-2026-31743 CWE-131 kernel: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
kernel: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
A flaw was found in the Linux kernel, specifically within the `nvmem` and `zynqmp_nvmem` modules. An incorrect buffer size used during Direct Memory Access (DMA) allocation and `memcpy` operations can lead to undersized DMA buffer access. This vulnerability could allow a local attacker to cause memory corruption, potentially leading to system instability or denial of service.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8)
No detection rules found.
No public exploits indexed.
2026-05-01
Published