Skip to content
VulniPulse
Highest advisory severityHigh Exploited CISA KEV 3 vendors · 4 advisories

CVE-2026-31431

CVE-2026-31431: 4 tracked advisory records across Fortinet, NetApp, Red Hat. CISA KEV listed; exploitation observed. Compare vendor sources and published fix…

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Fortinet

1 advisory
  • Advisory severityHigh7.8

    High [CVE-2026-31431] Linux Kernel Vulnerability - CVE-2026-31431

    FG-IR-26-139Source published Source updated

    CVSSv3 Score: 7.8 CVE-2026-31431 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly. Revised on 2026-05-13 00:00:00

    Related products — impact not confirmed
    No product details extracted. Check the source bulletin.
    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    No mitigation guidance extracted; consult the source.

NetApp

1 advisory
  • Advisory severityHigh7.8

    High [CVE-2026-31431] Linux Kernel Vulnerability in NetApp Products

    NTAP-20260501-0001Source published Source updated

    Multiple NetApp products incorporate Linux kernel. Certain Linux kernel versions are susceptible to a vulnerability referred to as Copy Fail. Attackers must have access to an unprivileged local user account to successfully exploit this vulnerability. Successful exploitation of this vulnerability could lead to disclosure of sensitive information, addition or modification of data, Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

    Affected products in this advisory
    No product details extracted. Check the source bulletin.
    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    No mitigation guidance extracted; consult the source.

Red Hat

2 advisories
  • Advisory severityHigh7.8

    High [CVE-2026-31431] algif_aead - Revert to operating out-of-place

    CVE-2026-31431Source published

    algif_aead - Revert to operating out-of-place. Red Hat rates this important (CVSS 7.8). Weakness: CWE-1288. Affected package(s): kernel, rhcos, kernel-rt, kpatch-patch. Resolved in Red Hat advisory RHSA-2026:13729 — update the affected packages (`sudo dnf update`).

    Affected products in this advisory
    • NVIDIA for RHEL 10
    • Red Hat OpenShift Container Platform 4.12
    • Red Hat OpenShift Container Platform 4.13
    • Red Hat OpenShift Container Platform 4.14

    63 more entries in the full advisory.

    Source-reported affected versions
    • kernel-0:4.18.0-553.123.1.el8_10
    • rhcos-414.92.202605060243-0
    • kernel-0:4.18.0-477.139.1.el8_8
    • rhcos-4.21.9.6.202605051105-0

    8 more entries in the full advisory.

    Source-reported fixed versions
    • RHSA-2026:13729
    Mitigation guidance
    • Update the affected package(s) to the fixed version shipped in RHSA-2026:13729 (`sudo dnf update` / `yum update`).
  • Advisory severityUnrated

    Advisory [CVE-2025-37849 +2] Kernel Live Patch Security Notice

    LSN-120-1Source published

    This bulletin covers 3 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.

    In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Tear down vGIC on failed vCPU creation If kvm_arch_vcpu_create() fails to share the vCPU page with the hypervisor, we propagate the error back to the ioctl but leave the vGIC vCPU data initialised. In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: add bounds checks in nvmet_tcp_build_pdu_iovec nvmet_tcp_build_pdu_iovec() could walk past cmd->req.sg when a PDU length or offset exceeds sg_cnt and then use bogus sg->length/offset values, leading to _copy_to_iter() GPF/KASAN. It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or…

    Related products — impact not confirmed
    • Ubuntu 24.04
    • Ubuntu 22.04
    • Ubuntu 20.04
    • Ubuntu 18.04

    1 more entries in the full advisory.

    Source-reported affected versions
    • Ubuntu 24.04
    • Ubuntu 22.04
    • Ubuntu 20.04
    • Ubuntu 18.04
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    • Apply available updates: `sudo apt update && sudo apt upgrade` (a standard system update installs the fix).

Android app · Google Play

Turn CVE research into alerts on your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery