Back to list

Linux Kernel Vulnerability copy.fail - CVE-2026-31431 — FG-IR-26-139

Fortinet · Fortinet · FG-IR-26-139

ID
FG-IR-26-139
Date
Activity
Source
Fortinet
Vendor
Fortinet
Threat
medium
CVSS
7.8

Summary

CVSSv3 Score: 7.8 CVE-2026-31431In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation…

Product

Fortinet

What to do

General, cautious steps (verify details in the official source):

  • Review exposure and plan remediation based on risk and environment.
  • Identify affected product versions in your inventory and verify whether you are impacted.
  • Apply vendor patches/updates or recommended mitigations as soon as available.
  • Read the official advisory for exact affected versions and remediation steps.

Official advisory

Related advisories