PT-2026-34982 · Linux+2 · Linux Kernel+2

CVE-2026-31630

·

Published

2026-04-24

·

Updated

2026-08-30

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description In the AF RXRPC procfs helpers, local and remote socket addresses are formatted into fixed 50-byte stack buffers using the %pISpc formatter. This buffer size is insufficient for the longest possible IPv6-with-port strings, such as those involving ISATAP addresses (Intra-Site Automatic Tunnel Addressing, a mechanism for connecting IPv6 hosts over IPv4 networks). Specifically, certain address formats can produce 50 visible characters, requiring 51 bytes including the null terminator, which leads to a buffer overflow in net/rxrpc/proc.c.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-83825
CVE-2026-31630
ECHO-54BC-B2EC-53E9
OESA-2026-2310
OESA-2026-2311
OESA-2026-2581
OESA-2026-2582
USN-8575-1
USN-8575-2
USN-8575-3
USN-8576-1
USN-8576-2
USN-8597-1
USN-8610-1
USN-8620-1
USN-8620-2
USN-8620-3
USN-8620-4
USN-8668-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu