logo

Copy Fail (CVE-2026-31431): Frequently asked questions about Linux kernel privilege escalation vulnerability

ID: 486f80ec-e87e-5b4d-8d4c-542ce61ead65

STIX ID: report--486f80ec-e87e-5b4d-8d4c-542ce61ead65

Feed Name: Tenable Blog

Threat Score
80/100

Date Published: 2026-04-30

Date Updated: 2026-05-01

Author: Satnam Narang

...
...

**Executive summary:** Tenable Research details CVE-2026-31431 (“Copy Fail”), a high-severity (CVSSv3 7.8) Linux kernel local privilege escalation introduced in 2017 and affecting kernels 4.14 and later; a reliable public proof-of-concept exploit is available, the flaw can modify the kernel page cache to escalate to root and cross container boundaries, and patches or mitigations exist though some distributions had not yet shipped updates as of the report.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.