CVE-2026-31674Patch(linux / linux_kernel)

MEDIUMCVSS 7.1 · HIGH

Exploitation observed; activity peaked at 4 mentions and remains active

Immediate actions

  • Patch linux linux_kernel systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() Reject rt match rules whose addrnr exceeds IP6T_RT_HOPS. rt_mt6() expects addrnr to stay within the bounds of rtinfo->addrs[]. Validate addrnr during rule installation so malformed rules are rejected before the match logic can use an out-of-range value.

4.0/ 10 priority

Sources & remediation

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 4 mentions (2026-04-25); latest day: 1
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
linux_kernel

2 versions affected across 1 product

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-04-25: 4Mentions · 2026-04-26: 1Active Exploitation · 2026-04-25: 1Patch / Workaround · 2026-04-25: 1Patch / Workaround · 2026-04-26: 1Technical Details · 2026-04-25: 1Technical Details · 2026-04-26: 104-2504-26
Signal classification3 categories
Patch
360.0%
Active Exploitation
120.0%
Disclosure
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-254
Active Exploitation1Disclosure1Patch2
2026-04-261
Patch1
Full discourse5 posts
  • VulDB 🛡@vuldb
    Active Exploitation

    A lot of offensive activities were identified targeting Linux Kernel (CVE-2026-31674) https://vuldb.com/vuln/359581/cti

    Post summary

    The passage reports that CVE‑2026‑31674 has seen significant exploitation activity targeting the Linux kernel, with no reference to PoC, tools, patches, or technical details.

    0101059
    2.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Patch

    CVE-2026-31674 In the Linux kernel, the following vulnerability has been resolved: netfilter https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-31674

    Post summary

    The CVE-2026-31674 vulnerability in the Linux kernel's netfilter component has been resolved, but no patch details or technical information are provided.

    0000139
    4.0K followersView on X
  • WindowsForum@windowsforum
    Patch

    🪟 CVE-2026-31674: a “modest” netfilter IPv6 bug that can make kernel arrays trip over their shoelaces. If your Linux firewall runs in your Windows stack, patch now—don’t wait for the crash log. https://windowsforum.com/threads/cve-2026-31674-netfilter-ipv6-bug-why-windows-teams-must-patch-linux-kernels.415247/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #LinuxKernel #NetfilterIpv6 #FirewallSecurity https://t.co/oTWz0vkRaU

    Post summary

    The post alerts users to a netfilter IPv6 bug that causes kernel crashes and urges immediate patching to prevent potential failures.

    0000055
    1.1K followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-31674 In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() Reject rt match rules whose addrnr… https://www.cve.org/CVERecord?id=CVE-2026-31674

    Post summary

    CVE-2026-31674 is an issue in the Linux kernel's netfilter module involving oversized addrnr checks, and the CVE record indicates it has been resolved, implying a patch is available.

    0000075
    57.2K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    There is a new vulnerability with elevated criticality in Linux Kernel (CVE-2026-31674) https://vuldb.com/vuln/359581

    Post summary

    The post announces a new critical Linux Kernel vulnerability (CVE-2026-31674) and links to a database entry, but it provides no technical details, PoC, or exploitation information.

    0000074
    2.1K followersView on X
CPE platform detail11 entries

11 of 11 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--

Explore more