CVE-2026-31416

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: account for netlink header size This is a followup to an old bug fix: NLMSG_DONE needs to account for the netlink header size, not just the attribute size. This can result in a WARN splat + drop of the netlink message, but other than this there are no ill effects.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc7:*:*:*:*:*:*

History

20 May 2026, 15:36

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE NVD-CWE-noinfo
References () https://git.kernel.org/stable/c/09883bf257f4243ed5a1fd35078ec6f0d0f3696a - () https://git.kernel.org/stable/c/09883bf257f4243ed5a1fd35078ec6f0d0f3696a - Patch
References () https://git.kernel.org/stable/c/4ec216410fac9de83c99177a160ebb8d42fad075 - () https://git.kernel.org/stable/c/4ec216410fac9de83c99177a160ebb8d42fad075 - Patch
References () https://git.kernel.org/stable/c/607245c4dbb86d9a10dd8388da0fb82170a99b61 - () https://git.kernel.org/stable/c/607245c4dbb86d9a10dd8388da0fb82170a99b61 - Patch
References () https://git.kernel.org/stable/c/6b419700e459fbf707ca1543b7c1b57a60fedb73 - () https://git.kernel.org/stable/c/6b419700e459fbf707ca1543b7c1b57a60fedb73 - Patch
References () https://git.kernel.org/stable/c/6d52a4a0520a6696bdde51caa11f2d6821cd0c01 - () https://git.kernel.org/stable/c/6d52a4a0520a6696bdde51caa11f2d6821cd0c01 - Patch
References () https://git.kernel.org/stable/c/761b45c661af48da6a065868d59ab1e1f64fd9b6 - () https://git.kernel.org/stable/c/761b45c661af48da6a065868d59ab1e1f64fd9b6 - Patch
References () https://git.kernel.org/stable/c/88a8f56e6276f616baad4274c6b8e4683e26e520 - () https://git.kernel.org/stable/c/88a8f56e6276f616baad4274c6b8e4683e26e520 - Patch
References () https://git.kernel.org/stable/c/f08ffa3e1c8e36b6131f69c5eb23700c28cbd262 - () https://git.kernel.org/stable/c/f08ffa3e1c8e36b6131f69c5eb23700c28cbd262 - Patch
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc7:*:*:*:*:*:*

18 Apr 2026, 09:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/09883bf257f4243ed5a1fd35078ec6f0d0f3696a -
  • () https://git.kernel.org/stable/c/4ec216410fac9de83c99177a160ebb8d42fad075 -

13 Apr 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-13 14:16

Updated : 2026-05-20 15:36


NVD link : CVE-2026-31416

Mitre link : CVE-2026-31416

CVE.ORG link : CVE-2026-31416


JSON object : View

Products Affected

linux

  • linux_kernel