PT-2026-35142 · Linux+2 · Linux Kernel+2

CVE-2026-31682

·

Published

2026-03-26

·

Updated

2026-08-25

CVSS v2.0

9.4

Critical

VectorAV:N/AC:L/Au:N/C:C/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the br nd send() function where neighbour discovery options are parsed from ns->opt[] under the assumption that these options reside in the linear part of the request. Because callers only guarantee the availability of the ICMPv6 header and target address, the option area may remain non-linear. This can lead to the system accessing data beyond the linear buffer during parsing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-84225
BDU:2026-08759
CVE-2026-31682
ECHO-DC72-D8B2-710B
OESA-2026-2310
OESA-2026-2311
OESA-2026-2312
OESA-2026-2313
OESA-2026-2314
OPENSUSE-SU-2026:20826-1
SUSE-SU-2026:21834-1
SUSE-SU-2026:21841-1
SUSE-SU-2026:21845-1
SUSE-SU-2026:21860-1
SUSE-SU-2026:21876-1
SUSE-SU-2026:21877-1
SUSE-SU-2026:21916-1
SUSE-SU-2026:21919-1
SUSE-SU-2026:2217-1
SUSE-SU-2026:2238-1
USN-8490-1
USN-8490-2
USN-8491-1
USN-8492-1
USN-8492-2
USN-8492-3
USN-8492-4
USN-8492-5
USN-8493-1
USN-8493-2
USN-8497-1
USN-8498-1
USN-8499-1
USN-8508-1
USN-8527-1
USN-8528-1
USN-8529-1
USN-8529-2
USN-8530-1
USN-8530-2
USN-8545-1
USN-8546-1
USN-8547-1
USN-8547-2
USN-8604-1
USN-8605-1
USN-8606-1
USN-8607-1
USN-8609-1
USN-8615-1
USN-8615-2
USN-8616-1
USN-8617-1
USN-8619-1
USN-8635-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu