CVE-2026-31685General(linux / linux_kernel)

LOWCVSS 9.4 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch linux linux_kernel systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_eui64: reject invalid MAC header for all packets `eui64_mt6()` derives a modified EUI-64 from the Ethernet source address and compares it with the low 64 bits of the IPv6 source address. The existing guard only rejects an invalid MAC header when `par->fragoff != 0`. For packets with `par->fragoff == 0`, `eui64_mt6()` can still reach `eth_hdr(skb)` even when the MAC header is not valid. Fix this by removing the `par->fragoff != 0` condition so that packets with an invalid MAC header are rejected before accessing `eth_hdr(skb)`.

0.5/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-25); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
linux_kernel

2 versions affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-25: 2Mentions · 2026-04-28: 1Patch / Workaround · 2026-04-25: 1Technical Details · 2026-04-25: 1Technical Details · 2026-04-28: 104-2504-28
Signal classification3 categories
General
133.3%
Patch
133.3%
Disclosure
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-04-252
General1Patch1
2026-04-281
Disclosure1
Full discourse3 posts
  • إبراهيم بوحيمد | Ibrahim Buhaimed@buhaimedi
    Disclosure

    🔴 الثغرة الأولى: (CVE-2026-31685) | التقييم: 9.4 (حرج جداً) 🌐 نوع الهجوم: هجوم عن بُعد (Remote Attack). ⚙️ وصف الثغرة: المشكلة هنا في طريقة تعامل النظام مع عناوين الإنترنت من النوع (IPv6). المهاجم يقدر يرسل "رسالة ملغمة" تجعل النظام يقرأ بيانات من أماكن خاطئة في الذاكرة. 🎯 النتيجة: تسريب معلومات سرية من ذاكرة النظام أو التسبب في توقف السيرفر بالكامل (حجب خدمة).

    Post summary

    The post announces a new high‑severity vulnerability (CVE‑2026‑31685) that exploits malformed IPv6 packets to corrupt memory, potentially leaking data or crashing the server; no PoC, exploit, or patch details are provided.

    110822.1K
    49.3K followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-31685 In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_eui64: reject invalid MAC header for all packets `eui64_mt6()` derives a modifie… https://www.cve.org/CVERecord?id=CVE-2026-31685

    Post summary

    This advisory confirms that CVE-2026-31685 in the Linux kernel has been fixed, with technical details disclosed but no PoC, exploit, or active exploitation reported.

    0000072
    57.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-31685 In the Linux kernel, the following vulnerability has been resolved: netfilter https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-31685

    Post summary

    The post notes that CVE-2026-31685, affecting the Linux kernel's netfilter component, has been resolved, but provides no further technical or patch details.

    0000064
    4.0K followersView on X
CPE platform detail13 entries

13 of 13 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel2.6.12--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--

Explore more