PT-2026-35142 · Linux · Linux Kernel

Published

2026-04-25

·

Updated

2026-05-26

·

CVE-2026-31682

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the br nd send() function where neighbour discovery options are parsed from ns->opt[] under the assumption that these options reside in the linear part of the request. Because callers only guarantee the availability of the ICMPv6 header and target address, the option area may remain non-linear. This can lead to the system accessing data beyond the linear buffer during parsing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-31682
ECHO-DC72-D8B2-710B
OESA-2026-2310
OESA-2026-2311
OESA-2026-2312
OESA-2026-2313
OESA-2026-2314

Affected Products

Linux Kernel