CVE-2026-31407 | Linux Kernel up to 6.19.9/7.0-rc4 netfilter nlattr_to_sctp out-of-bounds (EUVD-2026-19197 / Nessus ID 305059)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.19.9/7.0-rc4. Affected by this vulnerability is the function nlattr_to_sctp of the component netfilter. Executing a manipulation can lead to out-of-bounds read.
This vulnerability appears as CVE-2026-31407. The attacker needs to be present on the local network. There is no available exploit.
The affected component should be upgraded.