PT-2026-36373 · Linux · Linux Kernel

Published

2026-05-01

·

Updated

2026-05-02

·

CVE-2026-31738

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the vxlan na create() function where ND options are processed based on lengths provided within the options. A malformed option can cause the parser to advance beyond the computed option span or utilize a source LLADDR option payload that is too short.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2026-31738
ECHO-53A1-25CC-F7D8

Affected Products

Linux Kernel