Historical version

This is version 1, as it stood on . It is not what this organization currently publishes — read the current version.

2026-005: High Vulnerability in the Linux Kernel ("Copy Fail")

CERT-EU Version 1 original

Imported from official source

On 29 April 2026, a high local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named "Copy Fail", was publicly disclosed. The vulnerability affects every mainstream Linux distributions shipping a kernel built since 2017. A public proof-of-concept exploit has been released. As of the date of this advisory, no distribution has shipped a fixed kernel package. The mainline fix was committed on 1 April 2026, but vendor updates are still pending across all major distributions. CERT-EU strongly recommends applying the interim mitigation immediately, prioritisi...

This version

Version
1 of 2
Recorded
September 15, 2026 20:57
Change
Initial
Content hash
2516aea8843f87c836f7e6b641383a8e
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.