VDB
CVE-2026-31430
CVE-2026-31430
PUBLISHED
In the Linux kernel, the following vulnerability has been resolved: X.509: Fix out-of-bounds access when parsing extensions Leo reports an out-of-bounds access when parsing a certificate with empty Basic Constraints or Key Usage extension because the first byte of the extension is read before checking its length. Fix it. The bug can be triggered by an unprivileged user by submitting a specially crafted certificate to the kernel through the keyrings(7) API. Leo has demonstrated this with a proof-of-concept program responsibly disclosed off-list.
EPSS 0.01% · 2.1th percentile
Risk Scores
EPSS Score
0.01%
2.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| linux | linux_kernel | 6.4, 6.4, 6.4 |
| Linux | Linux | 30eae2b037af54b24109dcaea21db46f6285c69b, 30eae2b037af54b24109dcaea21db46f6285c69b, 30eae2b037af54b24109dcaea21db46f6285c69b |
Timeline
- Apr 20, 2026 CVE Published
- Apr 20, 2026 PoC Published
- Apr 21, 2026 Security Advisory
- Apr 23, 2026 CVE Updated
- May 18, 2026 EPSS Score
- May 19, 2026 EPSS Score
- May 20, 2026 EPSS Score
- May 21, 2026 EPSS Score
- May 22, 2026 EPSS Score
- May 23, 2026 EPSS Score
- May 24, 2026 EPSS Score
- May 25, 2026 EPSS Score
References
- https://git.kernel.org/stable/c/672b526def1f94c1be8eb11b885b803da0d8c2f1 url
- https://git.kernel.org/stable/c/30ab358fad0c7daa1d282ec48089901b21b36a20 url
- https://git.kernel.org/stable/c/206121294b9cf27f0589857f80d64f87e496ffb2 url
- https://git.kernel.org/stable/c/7fb4dadc2734f4020d7543d688b8d49c8e569c61 url
- https://git.kernel.org/stable/c/d702c3408213bb12bd570bb97204d8340d141c51 url
- https://nvd.nist.gov/vuln/detail/CVE-2026-31430 advisory
- https://lists.debian.org/debian-security-announce/2026/msg00154.html advisory
- https://lists.debian.org/debian-security-announce/2026/msg00148.html advisory