Copy Fail lands in CISA KEV as actively exploited Linux flaw threatens widespread privilege escalation

The Cybersecurity and Infrastructure Security Agency (CISA) has added another Linux kernel vulnerability, CVE-2026-31431, also known as Copy Fail, to the Known Exploited Vulnerabilities (KEVs).   Inclusion in the list implies active real-world attacks and increases the priority of patches.   This particular vulnerability, which has been affecting almost all major Linux distributions since 2017, involves transferring resources incorrectly between security domains […]

This article has been indexed from Information Security Buzz

Read the original article: