PT-2026-36387 · Linux · Linux Kernel

Published

2026-05-01

·

Updated

2026-05-26

·

CVE-2026-31752

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The br nd send() function processes Neighbor Discovery (ND) options based on lengths provided within the options. A malformed option can cause the parser to advance beyond the calculated option span or utilize a source LLADDR (Link-Layer Address) option payload that is too short.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2026-31752
ECHO-2FD8-EF08-C72F

Affected Products

Linux Kernel