logo

New Linux 'Copy Fail' Vulnerability Enables Root Access on Major Distributions

ID: 466f2110-7157-5161-a424-66d2f73de67d

STIX ID: report--466f2110-7157-5161-a424-66d2f73de67d

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: [email protected] (The Hacker News)

...
...

**CVE-2026-31431 ("Copy Fail") — Linux local privilege escalation (CVSS 7.8):** Researchers disclosed a logic flaw in the kernel algif_aead crypto module introduced in 2017 that lets an unprivileged local user write four controlled bytes into the page cache of readable files, enabling reliable, tiny, cross-distribution exploitation (including cross-container) to modify setuid binaries and escalate to root; vendors have published advisories and patches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.