PT-2026-36416 · Linux · Linux Kernel

CVE-2026-31781

·

Published

2026-03-24

·

Updated

2026-07-31

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The drm compat ioctl path accepts a user-controlled pointer and dereferences it into a table of function pointers. This pattern is characteristic of Spectre problems, which are side-channel attacks that exploit speculative execution in processors to leak sensitive data. The issue occurs during the processing of the drm compat ioctl path.
Recommendations Apply the fix by calling the array index nospec() function on the index to the function pointer list.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-10916
CVE-2026-31781
ECHO-2C16-47C8-5B2D
OESA-2026-2579
OESA-2026-2580
OESA-2026-2581
SUSE-SU-2026:2914-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3166-1
USN-8567-1
USN-8574-1
USN-8574-2
USN-8574-3
USN-8575-1
USN-8575-2
USN-8575-3
USN-8576-1
USN-8576-2
USN-8595-1
USN-8595-2
USN-8595-3
USN-8596-1
USN-8597-1
USN-8606-1
USN-8607-1
USN-8608-1
USN-8609-1
USN-8610-1
USN-8619-1
USN-8620-1
USN-8620-2
USN-8620-3
USN-8620-4

Affected Products

Linux Kernel