Skip to main content

Linux Kernel Elevation of Privilege Vulnerability

Last Update Date: 14 May 2026 Release Date: 4 May 2026 12835 Views

RISK: Medium Risk

TYPE: Operating Systems - Linux

TYPE: Linux

A vulnerability was identified in Linux Kernel. A local attacker can exploit this vulnerability to trigger elevation of privilege on the targeted system.

 

Note: 

CVE-2026-31431 is being exploited in the wild. Copy Fail (CVE-2026-31431) is a logic bug in the Linux kernel's authencesn cryptographic template. It lets an unprivileged local user trigger a deterministic, controlled 4-byte write into the page cache of any readable file on the system. A single 732-byte Python script can edit a setuid binary and obtain root on essentially all Linux distributions shipped since 2017.

 

[Updated on 2026-05-11]

Updated System / Technologies affected, Solutions, Source and Related Links.

 

[Updated on 2026-05-14]

Updated System / Technologies affected, Solutions, Source and Related Links.


Impact

  • Elevation of Privilege

System / Technologies affected


Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link