CVE-2026-31418
MediumIn the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in mtype_del mtype_del() counts empty slots below n->pos in k, but it only drops the bucket when both n->pos and k are zero. This misses buckets whose live entries have all been removed while n->pos still points past deleted slots. Treat a bucket as empty when all positions below n->pos are unused and release it directly instead of shrinking it further.
CVSS 3.1 score
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected versions
Linux kernel versions
5.4.24,
5.5.8,
5.6
and later are affected. Fixed in
5.10.253,
5.15.203,
6.1.168,
6.6.134,
6.12.81,
6.18.22,
6.19.12,
7.0
and their respective stable series.
References
The following references provide additional information about CVE-2026-31418 including vendor advisories, patch commits, exploit details, and third-party analysis. Links are sourced from the NIST NVD database.
-
PatchKernel patch commithttps://git.kernel.org/stable/c/58f3a14826d4e6b0d5421f1a64be280b48601ea2
-
PatchKernel patch commithttps://git.kernel.org/stable/c/68ca0eea0af02bed36c5e2c13e9fa1647c31a7d4
-
PatchKernel patch commithttps://git.kernel.org/stable/c/6cea34d7ec6829b62f521a37a287f670144a2233
Frequently asked questions
-
What is CVE-2026-31418?
CVE-2026-31418 is a Medium severity Linux kernel vulnerability with a CVSS score of 5.5 out of 10 . It affects Linux kernel versions from 5.4.24 onward and has been patched in 5.10.253, 5.15.203, 6.1.168 and others. CVE-2026-31418 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
What is the CVSS score for CVE-2026-31418?
CVE-2026-31418 has a CVSS score of 5.5 out of 10, rated Medium severity (CVSS 3.1). The vector string is
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H. -
Is there a patch available for CVE-2026-31418?
Yes — CVE-2026-31418 has been patched. Fixed versions include 5.10.253, 5.15.203, 6.1.168 and others. If you are running Linux kernel 5.4.24 or later up to the fix versions, apply the relevant patch for your kernel branch.
-
Is CVE-2026-31418 actively exploited?
No — CVE-2026-31418 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.