New Linux 'Copy Fail' Vulnerability Enables Root Access on Major Distributions
ID: 466f2110-7157-5161-a424-66d2f73de67d
STIX ID: report--466f2110-7157-5161-a424-66d2f73de67d
Feed Name: The Hacker News
Threat Score
**CVE-2026-31431 ("Copy Fail") — Linux local privilege escalation (CVSS 7.8):** Researchers disclosed a logic flaw in the kernel algif_aead crypto module introduced in 2017 that lets an unprivileged local user write four controlled bytes into the page cache of readable files, enabling reliable, tiny, cross-distribution exploitation (including cross-container) to modify setuid binaries and escalate to root; vendors have published advisories and patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
