PT-2026-36387 · Linux · Linux Kernel

CVE-2026-31752

·

Published

2026-05-01

·

Updated

2026-07-08

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The br nd send() function processes Neighbor Discovery (ND) options based on lengths provided within the options. A malformed option can cause the parser to advance beyond the calculated option span or utilize a source LLADDR (Link-Layer Address) option payload that is too short.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-31752
ECHO-2FD8-EF08-C72F
OESA-2026-2493
OESA-2026-2494
SUSE-SU-2026:22433-1
SUSE-SU-2026:22436-1
SUSE-SU-2026:22458-1
SUSE-SU-2026:22460-1
SUSE-SU-2026:2722-1
SUSE-SU-2026:2799-1

Affected Products

Linux Kernel